7.8

CVE-2018-1409

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmNotes Version8.5.1.5
IbmNotes Version8.5.2.4
IbmNotes Version8.5.3.6
IbmNotes Version9.0
IbmNotes Version9.0.1.9
IbmClient Application Access Version1.0.0.1
IbmClient Application Access Version1.0.1
IbmClient Application Access Version1.0.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.052
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C