Show filters
30 Total Results
Displaying 21-30 of 30
Sort by:
Attacker Value
Unknown

CVE-2011-1512

Disclosure Date: May 31, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in xlssr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a malformed BIFF record in a .xls Excel spreadsheet attachment, aka SPR PRAD8E3HKR.
0
Attacker Value
Unknown

CVE-2011-1217

Disclosure Date: May 31, 2011 (last updated October 04, 2023)
Buffer overflow in kpprzrdr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted .prz attachment. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2011-1215

Disclosure Date: May 31, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in mw8sr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted link in a Microsoft Office document attachment, aka SPR PRAD8823ND.
0
Attacker Value
Unknown

CVE-2011-1216

Disclosure Date: May 31, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.
0
Attacker Value
Unknown

CVE-2011-0912

Disclosure Date: February 08, 2011 (last updated October 04, 2023)
Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a DLL file, aka SPR PRAD82YJW2.
0
Attacker Value
Unknown

CVE-2010-4550

Disclosure Date: December 16, 2010 (last updated October 04, 2023)
IBM Lotus Notes Traveler before 8.5.1.3 allows remote attackers to cause a denial of service (sync failure) via a malformed document.
0
Attacker Value
Unknown

CVE-2010-4549

Disclosure Date: December 16, 2010 (last updated October 04, 2023)
IBM Lotus Notes Traveler before 8.5.1.3 on the Nokia s60 device successfully performs a Replace Data operation for a prohibited application, which allows remote authenticated users to bypass intended access restrictions via this operation.
0
Attacker Value
Unknown

CVE-2010-4547

Disclosure Date: December 16, 2010 (last updated October 04, 2023)
IBM Lotus Notes Traveler before 8.5.1.3, when a multidomain environment is used, does not properly apply policy documents to mobile users from a different Domino domain than the Traveler server, which allows remote authenticated users to bypass intended access restrictions by using credentials from a different domain.
0
Attacker Value
Unknown

CVE-2010-4544

Disclosure Date: December 16, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the servlet in IBM Lotus Notes Traveler before 8.5.1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2010-1608

Disclosure Date: April 29, 2010 (last updated October 04, 2023)
Stack-based buffer overflow in IBM Lotus Notes 8.5 and 8.5fp1, and possibly other versions, allows remote attackers to execute arbitrary code via unknown attack vectors, as demonstrated by the vd_ln module in VulnDisco 9.0. NOTE: as of 20100222, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
0