Lucene search

K
cveMitreCVE-2003-0122
HistorySep 01, 2004 - 4:00 a.m.

CVE-2003-0122

2004-09-0104:00:00
mitre
web.nvd.nist.gov
37
cve-2003-0122
buffer overflow
notes server
remote code execution
dn field
authentication
security vulnerability

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

8.1

Confidence

High

EPSS

0.016

Percentile

87.5%

Buffer overflow in Notes server before Lotus Notes R4, R5 before 5.0.11, and early R6 allows remote attackers to execute arbitrary code via a long distinguished name (DN) during NotesRPC authentication and an outer field length that is less than that of the DN field.

Affected configurations

Nvd
Node
ibmlotus_dominoMatch4.6.1
OR
ibmlotus_dominoMatch4.6.3
OR
ibmlotus_dominoMatch4.6.4
OR
ibmlotus_dominoMatch5.0
OR
ibmlotus_dominoMatch5.0.1
OR
ibmlotus_dominoMatch5.0.2
OR
ibmlotus_dominoMatch5.0.3
OR
ibmlotus_dominoMatch5.0.4
OR
ibmlotus_dominoMatch5.0.4a
OR
ibmlotus_dominoMatch5.0.5
OR
ibmlotus_dominoMatch5.0.6
OR
ibmlotus_dominoMatch5.0.6a
OR
ibmlotus_dominoMatch5.0.7a
OR
ibmlotus_dominoMatch5.0.8
OR
ibmlotus_dominoMatch5.0.8a
OR
ibmlotus_dominoMatch5.0.9
OR
ibmlotus_dominoMatch5.0.9a
OR
ibmlotus_dominoMatch5.0.10
OR
ibmlotus_dominoMatch5.0.11
OR
ibmlotus_notes_clientMatch5.0
OR
ibmlotus_notes_clientMatch5.0.1
OR
ibmlotus_notes_clientMatch5.0.2
OR
ibmlotus_notes_clientMatch5.0.3
OR
ibmlotus_notes_clientMatch5.0.4
OR
ibmlotus_notes_clientMatch5.0.5
OR
ibmlotus_notes_clientMatch5.0.9a
OR
ibmlotus_notes_clientMatch5.0.10
OR
ibmlotus_notes_clientMatch5.0.11
OR
ibmlotus_notes_clientMatchr5
VendorProductVersionCPE
ibmlotus_domino4.6.1cpe:2.3:a:ibm:lotus_domino:4.6.1:*:*:*:*:*:*:*
ibmlotus_domino4.6.3cpe:2.3:a:ibm:lotus_domino:4.6.3:*:*:*:*:*:*:*
ibmlotus_domino4.6.4cpe:2.3:a:ibm:lotus_domino:4.6.4:*:*:*:*:*:*:*
ibmlotus_domino5.0cpe:2.3:a:ibm:lotus_domino:5.0:*:*:*:*:*:*:*
ibmlotus_domino5.0.1cpe:2.3:a:ibm:lotus_domino:5.0.1:*:*:*:*:*:*:*
ibmlotus_domino5.0.2cpe:2.3:a:ibm:lotus_domino:5.0.2:*:*:*:*:*:*:*
ibmlotus_domino5.0.3cpe:2.3:a:ibm:lotus_domino:5.0.3:*:*:*:*:*:*:*
ibmlotus_domino5.0.4cpe:2.3:a:ibm:lotus_domino:5.0.4:*:*:*:*:*:*:*
ibmlotus_domino5.0.4acpe:2.3:a:ibm:lotus_domino:5.0.4a:*:*:*:*:*:*:*
ibmlotus_domino5.0.5cpe:2.3:a:ibm:lotus_domino:5.0.5:*:*:*:*:*:*:*
Rows per page:
1-10 of 291

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

8.1

Confidence

High

EPSS

0.016

Percentile

87.5%

Related for CVE-2003-0122