Lucene search

K
cveIbmCVE-2013-3027
HistoryAug 09, 2013 - 7:55 p.m.

CVE-2013-3027

2013-08-0919:55:06
CWE-189
ibm
web.nvd.nist.gov
102
cve-2013-3027
integer overflow
dwa9w
activex control
inotes
ibm domino 9.0
if3
remote code execution
web page
spr pthn97xhfw
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.952

Percentile

99.3%

Integer overflow in the DWA9W ActiveX control in iNotes in IBM Domino 9.0 before IF3 allows remote attackers to execute arbitrary code via a crafted web page, aka SPR PTHN97XHFW.

Affected configurations

Nvd
Node
ibmlotus_dominoMatch9.0.0.0
VendorProductVersionCPE
ibmlotus_domino9.0.0.0cpe:2.3:a:ibm:lotus_domino:9.0.0.0:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.952

Percentile

99.3%