7.5

CVE-2020-14273

Exploit

HCL Domino is susceptible to a Denial of Service (DoS) vulnerability due to insufficient validation of input to its public API. An unauthenticated attacker could could exploit this vulnerability to crash the Domino server.

Data is provided by the National Vulnerability Database (NVD)
HcltechDomino Version10.0.1 Update-
HcltechDomino Version10.0.1 Updatefix_pack_1
HcltechDomino Version10.0.1 Updatefix_pack_2
HcltechDomino Version10.0.1 Updatefix_pack_3
HcltechDomino Version10.0.1 Updatefix_pack_4
HcltechDomino Version10.0.1 Updatefix_pack_5
HcltechDomino Version11.0.0
HcltechDomino Version11.0.1 Update-
HcltechDomino Version11.0.1 Updatefix_pack_1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.69% 0.694
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.