A vulnerability in the MIME message handling of the Domino server (versions 9 and 10) could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow. This could allow a remote attacker to crash the server or inject code into the system which would execute with the privileges of the server.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HHcltech Domino
APPHcltech10.0.19.0.0 – 10.0.1 (excl.)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Auth BypassMemory
CWE
Related vulnerabilities
CVE-2022-44750CRITICAL9.8PL ✓same product
HCL Domino: stack-based buffer overflow w lasr.dll (KeyView) — RCE
CVE-2022-44752CRITICAL9.8PL ✓same product
HCL Domino: stack-based buffer overflow w bibliotece wp6sr.dll (KeyView)
CVE-2022-44754CRITICAL9.8PL ✓same product
HCL Domino: stack-based buffer overflow w lasr.dll (KeyView) — RCE bez uwierzytelnienia
CVE-2020-14260CRITICAL9.8PL ✓same product
Buffer Overflow w HCL Domino (DXL) umożliwiający RCE lub crash serwera
CVE-2023-37539HIGH8.4same product
The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker w...