7.8

CVE-2018-1410

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138709.

Data is provided by the National Vulnerability Database (NVD)
IbmNotes Version8.5.1.5
IbmNotes Version8.5.2.4
IbmNotes Version8.5.3.6
IbmNotes Version9.0
IbmNotes Version9.0.1.9
IbmClient Application Access Version1.0.0.1
IbmClient Application Access Version1.0.1
IbmClient Application Access Version1.0.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.095
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P