Skip to main content

Vendor/product archive

ibm / notes CVEs

Beta · best-effort

12 CVEs tagged to ibm / notes0 Critical, 9 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2018-1771

Published Dec 20, 2018

IBM Domino 9.0 and 9.0.1 could allow an attacker to execute commands on the system by triggering a buffer overflow in the parsing of command line arguments passed to nsd.exe. IBM…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17689

Published May 16, 2018

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2018-1437

Published Mar 14, 2018

IBM Notes 8.5 and 9.0 could allow an attacker to execute arbitrary code on the system, caused by an error related to multiple untrusted search path. A local attacker could exploit…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-1435

Published Mar 14, 2018

IBM Notes 8.5 and 9.0 is vulnerable to a DLL hijacking attack. A remote attacker could trick a user to double click a malicious executable in an attacker-controlled directory, whi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-1411

Published Feb 19, 2018

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-1410

Published Feb 19, 2018

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-1409

Published Feb 19, 2018

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1720

Published Feb 13, 2018

IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafting a command line sent via the shared memory IPC. IBM X-Force ID: 134807.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-1714

Published Feb 13, 2018

IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain System privilege. IBM X-Force ID: 134633.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1