Show filters
222 Total Results
Displaying 1-10 of 222
Sort by:
Attacker Value
Unknown
CVE-2017-1274
Disclosure Date: April 25, 2017 (last updated November 26, 2024)
IBM Domino 8.5.3, and 9.0 is vulnerable to a stack based overflow in the IMAP service that could allow an authenticated attacker to execute arbitrary code by specifying a large mailbox name. IBM X-Force ID: 124749.
1
Attacker Value
Unknown
CVE-2024-30129
Disclosure Date: December 06, 2024 (last updated December 21, 2024)
The HTTP host header can be manipulated and cause the application to behave in unexpected ways. Any changes made to the header would cause the request to be sent to a completely different domain/IP address.
0
Attacker Value
Unknown
CVE-2024-30132
Disclosure Date: October 01, 2024 (last updated October 02, 2024)
HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown
CVE-2024-7400
Disclosure Date: September 27, 2024 (last updated September 27, 2024)
The vulnerability potentially allowed an attacker to misuse ESET’s file operations during the removal of a detected file on the Windows operating system to delete files without having proper permissions to do so.
0
Attacker Value
Unknown
CVE-2024-30128
Disclosure Date: September 25, 2024 (last updated September 26, 2024)
HCL Nomad server on Domino is affected by an open proxy vulnerability in which an unauthenticated attacker can mask their original source IP address. This may enable an attacker to trick the user into exposing sensitive information.
0
Attacker Value
Unknown
CVE-2024-30130
Disclosure Date: July 19, 2024 (last updated July 19, 2024)
HCL Nomad server on Domino is vulnerable to the cache containing sensitive information which could potentially give an attacker the ability to acquire the sensitive information.
0
Attacker Value
Unknown
CVE-2024-23562
Disclosure Date: July 08, 2024 (last updated October 23, 2024)
A security vulnerability in HCL Domino could allow disclosure of sensitive configuration information. A remote unauthenticated attacker could exploit this vulnerability to obtain information to launch further attacks against the affected system.
0
Attacker Value
Unknown
CVE-2024-23588
Disclosure Date: July 05, 2024 (last updated July 09, 2024)
HCL Nomad server on Domino fails to properly handle users configured with limited Domino access resulting in a possible denial of service vulnerability.
0
Attacker Value
Unknown
CVE-2024-2003
Disclosure Date: June 21, 2024 (last updated June 21, 2024)
Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation from quarantine.
0
Attacker Value
Unknown
CVE-2023-37539
Disclosure Date: June 06, 2024 (last updated July 17, 2024)
The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker with the ability to edit documents in the catalog application/database created from this template can embed a cross site scripting attack. The attack would be activated by an end user clicking it.
0