5.3

CVE-2020-14270

HCL Domino v9, v10, v11 is susceptible to an Information Disclosure vulnerability in XPages due to improper error handling of user input. An unauthenticated attacker could exploit this vulnerability to obtain information about the XPages software running on the Domino server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hcltech ≫ Domino Version >= 9.0.0 <= 10.0.0
Hcltech ≫ Domino Version 10.0.1 Update -
Hcltech ≫ Domino Version 10.0.1 Update fix_pack_1
Hcltech ≫ Domino Version 10.0.1 Update fix_pack_2
Hcltech ≫ Domino Version 10.0.1 Update fix_pack_3
Hcltech ≫ Domino Version 10.0.1 Update fix_pack_4
Hcltech ≫ Domino Version 11.0.0
Hcltech ≫ Domino Version 11.0.1 Update -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.89% 0.546
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-755 Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.

https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0085881
Patch
Vendor Advisory