CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
94.1%
Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (application crash) via multiple vectors, involving (1) a malformed message sent to an “Out Of Office” agent (SPR LPEE6DMQWJ), (2) the compact command (RTIN5U2SAJ), (3) malformed bitmap images (MYAA6FH5HW), (4) the “Delete Attachment” action (YPHG6844LD), (5) parsing certificates from a remote Certificate Table (AELE6DZFJW), and (6) creating a SSL key ring with the Domino Administration client (NSUA4FQPTN).
Vendor | Product | Version | CPE |
---|---|---|---|
ibm | lotus_domino | 6.5.0 | cpe:2.3:a:ibm:lotus_domino:6.5.0:*:*:*:*:*:*:* |
ibm | lotus_domino | 6.5.1 | cpe:2.3:a:ibm:lotus_domino:6.5.1:*:*:*:*:*:*:* |
ibm | lotus_domino | 6.5.2 | cpe:2.3:a:ibm:lotus_domino:6.5.2:*:*:*:*:*:*:* |
ibm | lotus_domino | 6.5.3 | cpe:2.3:a:ibm:lotus_domino:6.5.3:*:*:*:*:*:*:* |
ibm | lotus_domino | 6.5.4 | cpe:2.3:a:ibm:lotus_domino:6.5.4:*:*:*:*:*:*:* |
ibm | lotus_domino | 6.5.4 | cpe:2.3:a:ibm:lotus_domino:6.5.4:*:fp1:*:*:*:*:* |
ibm | lotus_domino | 6.5.4 | cpe:2.3:a:ibm:lotus_domino:6.5.4:*:fp2:*:*:*:*:* |
ibm | lotus_domino_enterprise_server | 6.5.2 | cpe:2.3:a:ibm:lotus_domino_enterprise_server:6.5.2:*:*:*:*:*:*:* |
ibm | lotus_domino_enterprise_server | 6.5.4 | cpe:2.3:a:ibm:lotus_domino_enterprise_server:6.5.4:*:*:*:*:*:*:* |
ibm | lotus_notes | 6.5 | cpe:2.3:a:ibm:lotus_notes:6.5:*:*:*:*:*:*:* |
secunia.com/advisories/18328
www-1.ibm.com/support/docview.wss?uid=swg27007054
www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/258394eaa824f2c08525708a004209d3?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/040482aeb1416bb7852570e4001badd6?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/2bb4f466a9e986ae852570e4001babbb?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/4118a1f266afb26c852570e4001baf5e?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/5f166a44ee743b2c852570e4001baf31?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/ad0dd14aa109f96b852570e4001bb08c?OpenDocument
www-10.lotus.com/ldd/r5fixlist.nsf/e7dbb5aee9a94c56852570c90056a95d/ced5f873baea4e8b852570e4001baa6d?OpenDocument
www.securityfocus.com/bid/16158
www.vupen.com/english/advisories/2006/0081
exchange.xforce.ibmcloud.com/vulnerabilities/24212
exchange.xforce.ibmcloud.com/vulnerabilities/24213
exchange.xforce.ibmcloud.com/vulnerabilities/24214
exchange.xforce.ibmcloud.com/vulnerabilities/24215
exchange.xforce.ibmcloud.com/vulnerabilities/24216
exchange.xforce.ibmcloud.com/vulnerabilities/24217