CVE-2016-2938
- EPSS 0.28%
- Published 01.02.2017 20:59:00
- Last modified 20.04.2025 01:37:25
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CVE-2016-0304
- EPSS 1.11%
- Published 29.06.2016 01:59:06
- Last modified 12.04.2025 10:46:40
The Java Console in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6, when a certain unsupported configuration involving UNC share pathnames is used, allows remote attackers to bypass authentication and possibly execute arbitrary code ...
CVE-2016-0301
- EPSS 1.92%
- Published 26.06.2016 14:59:05
- Last modified 12.04.2025 10:46:40
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6 allows remote attackers to execute arbitrary code via a crafted PDF document, a different vulnerability than CVE-2016-0277, CVE-20...
CVE-2016-0279
- EPSS 1.86%
- Published 26.06.2016 14:59:04
- Last modified 12.04.2025 10:46:40
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6 allows remote attackers to execute arbitrary code via a crafted PDF document, a different vulnerability than CVE-2016-0277, CVE-20...
CVE-2016-0278
- EPSS 1.94%
- Published 26.06.2016 14:59:03
- Last modified 12.04.2025 10:46:40
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6 allows remote attackers to execute arbitrary code via a crafted PDF document, a different vulnerability than CVE-2016-0277, CVE-20...
CVE-2016-0277
- EPSS 1.86%
- Published 26.06.2016 14:59:02
- Last modified 12.04.2025 10:46:40
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6 allows remote attackers to execute arbitrary code via a crafted PDF document, a different vulnerability than CVE-2016-0278, CVE-20...
CVE-2015-5040
- EPSS 2.44%
- Published 29.10.2015 11:59:07
- Last modified 12.04.2025 10:46:40
Buffer overflow in IBM Domino 8.5.1 through 8.5.3 before 8.5.3 FP6 IF10 and 9.x before 9.0.1 FP4 IF3 allows remote attackers to execute arbitrary code or cause a denial of service (SMTP daemon crash) via a crafted GIF image, aka SPRs KLYH9ZDKRE and K...
CVE-2015-4994
- EPSS 2.44%
- Published 29.10.2015 10:59:43
- Last modified 12.04.2025 10:46:40
Buffer overflow in IBM Domino 8.5.1 through 8.5.3 before 8.5.3 FP6 IF10 and 9.x before 9.0.1 FP4 IF3 allows remote attackers to execute arbitrary code or cause a denial of service (SMTP daemon crash) via a crafted GIF image, aka SPRs KLYH9ZDKRE and K...
CVE-2015-2015
- EPSS 0.24%
- Published 23.08.2015 01:59:01
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in pubnames.ntf (aka the Directory template) in the web server in IBM Domino before 9.0.0 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka SPR KLYH8WBPRN.
CVE-2015-2014
- EPSS 0.2%
- Published 23.08.2015 01:59:00
- Last modified 12.04.2025 10:46:40
Open redirect vulnerability in the web server in IBM Domino 8.5 before 8.5.3 FP6 IF9 and 9.0 before 9.0.1 FP4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or cross-site scripting (XSS) attacks via a cr...