Lucene search

K
cveMitreCVE-2011-0914
HistoryFeb 08, 2011 - 10:00 p.m.

CVE-2011-0914

2011-02-0822:00:02
CWE-189
mitre
web.nvd.nist.gov
32
cve
ibm lotus domino
integer signedness error
remote code execution
nvd
giop client request

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.167

Percentile

96.1%

Integer signedness error in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP client request, leading to a heap-based buffer overflow.

Affected configurations

Nvd
Node
ibmlotus_dominoRange8.5.2.2
OR
ibmlotus_dominoMatch4.6.1
OR
ibmlotus_dominoMatch4.6.3
OR
ibmlotus_dominoMatch4.6.4
OR
ibmlotus_dominoMatch5.0
OR
ibmlotus_dominoMatch5.0.1
OR
ibmlotus_dominoMatch5.0.2
OR
ibmlotus_dominoMatch5.0.3
OR
ibmlotus_dominoMatch5.0.4
OR
ibmlotus_dominoMatch5.0.4a
OR
ibmlotus_dominoMatch5.0.5
OR
ibmlotus_dominoMatch5.0.6
OR
ibmlotus_dominoMatch5.0.6a
OR
ibmlotus_dominoMatch5.0.7
OR
ibmlotus_dominoMatch5.0.7a
OR
ibmlotus_dominoMatch5.0.8
OR
ibmlotus_dominoMatch5.0.8a
OR
ibmlotus_dominoMatch5.0.9
OR
ibmlotus_dominoMatch5.0.9a
OR
ibmlotus_dominoMatch5.0.10
OR
ibmlotus_dominoMatch5.0.11
OR
ibmlotus_dominoMatch6.0
OR
ibmlotus_dominoMatch6.0.1
OR
ibmlotus_dominoMatch6.0.1.1
OR
ibmlotus_dominoMatch6.0.1.2
OR
ibmlotus_dominoMatch6.0.1.3
OR
ibmlotus_dominoMatch6.0.2
OR
ibmlotus_dominoMatch6.0.2.1
OR
ibmlotus_dominoMatch6.0.2.2
OR
ibmlotus_dominoMatch6.0.2_cf2
OR
ibmlotus_dominoMatch6.0.3
OR
ibmlotus_dominoMatch6.0.4
OR
ibmlotus_dominoMatch6.0.5
OR
ibmlotus_dominoMatch6.5
OR
ibmlotus_dominoMatch6.5.0
OR
ibmlotus_dominoMatch6.5.1
OR
ibmlotus_dominoMatch6.5.2
OR
ibmlotus_dominoMatch6.5.2.1
OR
ibmlotus_dominoMatch6.5.3
OR
ibmlotus_dominoMatch6.5.3.1
OR
ibmlotus_dominoMatch6.5.4
OR
ibmlotus_dominoMatch6.5.4.1
OR
ibmlotus_dominoMatch6.5.4.2
OR
ibmlotus_dominoMatch6.5.4.3
OR
ibmlotus_dominoMatch6.5.5
OR
ibmlotus_dominoMatch6.5.6
OR
ibmlotus_dominoMatch7.0
OR
ibmlotus_dominoMatch7.0.1
OR
ibmlotus_dominoMatch7.0.1.1
OR
ibmlotus_dominoMatch7.0.2
OR
ibmlotus_dominoMatch7.0.2.1
OR
ibmlotus_dominoMatch7.0.2.2
OR
ibmlotus_dominoMatch7.0.2.3
OR
ibmlotus_dominoMatch7.0.3
OR
ibmlotus_dominoMatch7.0.3.1
OR
ibmlotus_dominoMatch7.0.4
OR
ibmlotus_dominoMatch7.0.4.1
OR
ibmlotus_dominoMatch7.0.4.2
OR
ibmlotus_dominoMatch8.0.1
OR
ibmlotus_dominoMatch8.0.2
OR
ibmlotus_dominoMatch8.0.2.1
OR
ibmlotus_dominoMatch8.0.2.2
OR
ibmlotus_dominoMatch8.0.2.3
OR
ibmlotus_dominoMatch8.0.2.4
OR
ibmlotus_dominoMatch8.0.2.5
OR
ibmlotus_dominoMatch8.0.2.6
OR
ibmlotus_dominoMatch8.5.1
OR
ibmlotus_dominoMatch8.5.1.1
OR
ibmlotus_dominoMatch8.5.1.2
OR
ibmlotus_dominoMatch8.5.1.3
OR
ibmlotus_dominoMatch8.5.1.4
OR
ibmlotus_dominoMatch8.5.1.5
OR
ibmlotus_dominoMatch8.5.2
OR
ibmlotus_dominoMatch8.5.2.1
VendorProductVersionCPE
ibmlotus_domino*cpe:2.3:a:ibm:lotus_domino:*:*:*:*:*:*:*:*
ibmlotus_domino4.6.1cpe:2.3:a:ibm:lotus_domino:4.6.1:*:*:*:*:*:*:*
ibmlotus_domino4.6.3cpe:2.3:a:ibm:lotus_domino:4.6.3:*:*:*:*:*:*:*
ibmlotus_domino4.6.4cpe:2.3:a:ibm:lotus_domino:4.6.4:*:*:*:*:*:*:*
ibmlotus_domino5.0cpe:2.3:a:ibm:lotus_domino:5.0:*:*:*:*:*:*:*
ibmlotus_domino5.0.1cpe:2.3:a:ibm:lotus_domino:5.0.1:*:*:*:*:*:*:*
ibmlotus_domino5.0.2cpe:2.3:a:ibm:lotus_domino:5.0.2:*:*:*:*:*:*:*
ibmlotus_domino5.0.3cpe:2.3:a:ibm:lotus_domino:5.0.3:*:*:*:*:*:*:*
ibmlotus_domino5.0.4cpe:2.3:a:ibm:lotus_domino:5.0.4:*:*:*:*:*:*:*
ibmlotus_domino5.0.4acpe:2.3:a:ibm:lotus_domino:5.0.4a:*:*:*:*:*:*:*
Rows per page:
1-10 of 741

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.167

Percentile

96.1%