Lucene search

K
cveMitreCVE-2002-1624
HistoryMar 26, 2005 - 5:00 a.m.

CVE-2002-1624

2005-03-2605:00:00
mitre
web.nvd.nist.gov
41
cve-2002-1624
buffer overflow
lotus domino
r5.0.10
denial of service
arbitrary code execution
http
authenticate header
non-ascii characters
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

8.1

Confidence

High

EPSS

0.038

Percentile

91.9%

Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP Authenticate header containing certain non-ASCII characters.

Affected configurations

Nvd
Node
ibmlotus_dominoMatch5.0
OR
ibmlotus_dominoMatch5.0.1
OR
ibmlotus_dominoMatch5.0.2
OR
ibmlotus_dominoMatch5.0.3
OR
ibmlotus_dominoMatch5.0.4solaris
OR
ibmlotus_dominoMatch5.0.4a
OR
ibmlotus_dominoMatch5.0.5
OR
ibmlotus_dominoMatch5.0.6
OR
ibmlotus_dominoMatch5.0.6a
OR
ibmlotus_dominoMatch5.0.7solaris
OR
ibmlotus_dominoMatch5.0.7a
OR
ibmlotus_dominoMatch5.0.8
OR
ibmlotus_dominoMatch5.0.9
OR
ibmlotus_dominoMatch5.0.9a
VendorProductVersionCPE
ibmlotus_domino5.0cpe:2.3:a:ibm:lotus_domino:5.0:*:*:*:*:*:*:*
ibmlotus_domino5.0.1cpe:2.3:a:ibm:lotus_domino:5.0.1:*:*:*:*:*:*:*
ibmlotus_domino5.0.2cpe:2.3:a:ibm:lotus_domino:5.0.2:*:*:*:*:*:*:*
ibmlotus_domino5.0.3cpe:2.3:a:ibm:lotus_domino:5.0.3:*:*:*:*:*:*:*
ibmlotus_domino5.0.4cpe:2.3:a:ibm:lotus_domino:5.0.4:*:solaris:*:*:*:*:*
ibmlotus_domino5.0.4acpe:2.3:a:ibm:lotus_domino:5.0.4a:*:*:*:*:*:*:*
ibmlotus_domino5.0.5cpe:2.3:a:ibm:lotus_domino:5.0.5:*:*:*:*:*:*:*
ibmlotus_domino5.0.6cpe:2.3:a:ibm:lotus_domino:5.0.6:*:*:*:*:*:*:*
ibmlotus_domino5.0.6acpe:2.3:a:ibm:lotus_domino:5.0.6a:*:*:*:*:*:*:*
ibmlotus_domino5.0.7cpe:2.3:a:ibm:lotus_domino:5.0.7:*:solaris:*:*:*:*:*
Rows per page:
1-10 of 141

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

8.1

Confidence

High

EPSS

0.038

Percentile

91.9%

Related for CVE-2002-1624