Ibm

Lotus Notes

71 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 15.96%
  • Published 31.05.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Stack-based buffer overflow in rtfsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted link in a .rtf attachment, aka SPR PRAD8823JQ.

  • EPSS 78.66%
  • Published 31.05.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Integer underflow in lzhsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted header in a .lzh attachment that triggers a stack-based buffer overflow, aka SPR PRAD88MJ...

  • EPSS 1.71%
  • Published 08.02.2011 22:00:02
  • Last modified 11.04.2025 00:51:21

Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a ...

  • EPSS 10.35%
  • Published 29.04.2010 17:30:00
  • Last modified 11.04.2025 00:51:21

Stack-based buffer overflow in IBM Lotus Notes 8.5 and 8.5fp1, and possibly other versions, allows remote attackers to execute arbitrary code via unknown attack vectors, as demonstrated by the vd_ln module in VulnDisco 9.0. NOTE: as of 20100222, thi...

  • EPSS 0.06%
  • Published 20.04.2010 15:30:00
  • Last modified 11.04.2025 00:51:21

IBM Lotus Notes 7.0, 8.0, and 8.5 stores administrative credentials in cleartext in SURunAs.exe, which allows local users to obtain sensitive information by examining this file, aka SPR JSTN837SEG.

Exploit
  • EPSS 1.9%
  • Published 05.03.2010 19:30:00
  • Last modified 11.04.2025 00:51:21

Integer overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security for Microsoft Exchange 5.0.10 through 5.0.13, and other products, allows context-dependent attackers t...

  • EPSS 0.77%
  • Published 09.09.2009 22:30:00
  • Last modified 09.04.2025 00:30:58

The RSS reader widget in IBM Lotus Notes 8.0 and 8.5 saves items from an RSS feed as local HTML documents, which allows remote attackers to execute arbitrary script in Internet Explorer's Local Machine Zone via a crafted feed, aka SPR RGAU7RDJ9K.

  • EPSS 16.84%
  • Published 01.09.2009 16:30:00
  • Last modified 09.04.2025 00:30:58

Buffer overflow in xlssr.dll in the Autonomy KeyView XLS viewer (aka File Viewer for Excel), as used in IBM Lotus Notes 5.x through 8.5.x, Symantec Mail Security, Symantec BrightMail Appliance, Symantec Data Loss Prevention (DLP), and other products,...

  • EPSS 56.29%
  • Published 18.03.2009 15:30:00
  • Last modified 09.04.2025 00:30:58

Stack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) products, Symantec BrightMail Appliance products, and Symantec Data Loss Prevention (DLP) products, allows...

  • EPSS 33.37%
  • Published 10.04.2008 18:05:00
  • Last modified 09.04.2025 00:30:58

Multiple heap-based buffer overflows in emlsr.dll in the EML reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, allow remote attackers to execute arbitrary code via a long (1) To, (2) Cc, (3) Bcc, (4) From, (5) Date, (...