Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2011-0914

Disclosure Date: February 08, 2011 (last updated October 04, 2023)
Integer signedness error in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP client request, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2011-0915

Disclosure Date: February 08, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in nrouter.exe in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a long name parameter in a Content-Type header in a malformed Notes calendar (aka iCalendar or iCal) meeting request, aka SPR KLYH87LL23.
0
Attacker Value
Unknown

CVE-2011-0913

Disclosure Date: February 08, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP getEnvironmentString request, related to the local variable cache.
0
Attacker Value
Unknown

CVE-2007-0067

Disclosure Date: June 06, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the Lotus Domino Web Server 6.0, 6.5.x before 6.5.6, and 7.0.x before 7.0.3 allows remote attackers to cause a denial of service (daemon crash) via requests for URLs that reference certain files.
0
Attacker Value
Unknown

CVE-2006-5818

Disclosure Date: November 08, 2006 (last updated October 04, 2023)
Multiple buffer overflows in tunekrnl in IBM Lotus Domino 6.x before 6.5.5 FP2 and 7.x before 7.0.2 allow local users to gain privileges and execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown

CVE-2005-1441

Disclosure Date: May 03, 2005 (last updated February 22, 2025)
Format string vulnerability in Lotus Domino 6.0.x before 6.0.5 and 6.5.x before 6.5.4 allows remote attackers to cause a denial of service via the Notes protocol (NRPC).
0
Attacker Value
Unknown

CVE-2004-1621

Disclosure Date: October 18, 2004 (last updated February 22, 2025)
NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in IBM Lotus Notes R6 and Domino R6, and possibly earlier versions, allows remote attackers to execute arbitrary web script or HTML via square brackets at the beginning and end of (1) computed for display, (2) computed when composed, or (3) computed text element fields. NOTE: the vendor has disputed this issue, saying that it is not a problem with Notes/Domino itself, but with the applications that do not properly handle this feature
0