Lucene search

K
cveIbmCVE-2013-3026
HistoryJun 17, 2013 - 3:29 a.m.

CVE-2013-3026

2013-06-1703:29:45
CWE-119
ibm
web.nvd.nist.gov
29
cve-2013-3026
buffer overflow
lotus quickr
domino
activex control
ibm
arbitrary code
vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.294

Percentile

97.0%

Buffer overflow in the Lotus Quickr for Domino ActiveX control in qp2.cab in IBM Lotus Quickr 8.1 before FP 8.1.0.32-001a, 8.2 before FP 8.2.0.28-001a, and 8.5.1 before FP 8.5.1.39-002a for Domino allows remote attackers to execute arbitrary code via a crafted web site.

Affected configurations

Nvd
Node
ibmlotus_quickr_for_dominoMatch8.1.0
OR
ibmlotus_quickr_for_dominoMatch8.2.0
OR
ibmlotus_quickr_for_dominoMatch8.5.1
VendorProductVersionCPE
ibmlotus_quickr_for_domino8.1.0cpe:2.3:a:ibm:lotus_quickr_for_domino:8.1.0:*:*:*:*:*:*:*
ibmlotus_quickr_for_domino8.2.0cpe:2.3:a:ibm:lotus_quickr_for_domino:8.2.0:*:*:*:*:*:*:*
ibmlotus_quickr_for_domino8.5.1cpe:2.3:a:ibm:lotus_quickr_for_domino:8.5.1:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.294

Percentile

97.0%