CVE-2012-4822
- EPSS 10.24%
- Published 11.01.2013 00:55:01
- Last modified 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 SR14 and earlier, and Java 142 SR13 FP13 and earlier; as used in IBM Rational Host On-Demand, Rationa...
CVE-2012-4820
- EPSS 9.37%
- Published 11.01.2013 00:55:00
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 SR14 and earlier, and Java 142 SR13 FP13 and earlier; as used in IBM Rational Host On-Demand, Rational Change, T...
CVE-2012-4846
- EPSS 0.23%
- Published 19.12.2012 11:55:54
- Last modified 11.04.2025 00:51:21
IBM Lotus Notes 8.5.x before 8.5.3 FP3 does not include the HTTPOnly flag in a Set-Cookie header for a web-application cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, ak...
CVE-2010-5251
- EPSS 0.08%
- Published 07.09.2012 10:32:22
- Last modified 11.04.2025 00:51:21
Multiple untrusted search path vulnerabilities in IBM Lotus Notes 8.5 allow local users to gain privileges via a Trojan horse (1) nnoteswc.dll or (2) nlsxbe.dll file in the current working directory, as demonstrated by a directory that contains a .vc...
CVE-2012-2174
- EPSS 68.53%
- Published 20.06.2012 10:27:28
- Last modified 11.04.2025 00:51:21
The URL handler in IBM Lotus Notes 8.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a crafted notes:// URL.
CVE-2011-1217
- EPSS 11.06%
- Published 31.05.2011 20:55:02
- Last modified 11.04.2025 00:51:21
Buffer overflow in kpprzrdr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted .prz attachment. NOTE: some of these details are obtained from third party information.
CVE-2011-1215
- EPSS 18.88%
- Published 31.05.2011 20:55:02
- Last modified 11.04.2025 00:51:21
Stack-based buffer overflow in mw8sr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted link in a Microsoft Office document attachment, aka SPR PRAD8823ND.
CVE-2011-1216
- EPSS 18.88%
- Published 31.05.2011 20:55:02
- Last modified 11.04.2025 00:51:21
Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.
CVE-2011-1218
- EPSS 8.46%
- Published 31.05.2011 20:55:02
- Last modified 11.04.2025 00:51:21
Buffer overflow in kvarcve.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted .zip attachment, aka SPR PRAD8E3NSP. NOTE: some of these details are obtained from third ...
CVE-2011-1512
- EPSS 18.23%
- Published 31.05.2011 20:55:02
- Last modified 11.04.2025 00:51:21
Heap-based buffer overflow in xlssr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a malformed BIFF record in a .xls Excel spreadsheet attachment, aka SPR PRAD8E3HKR.