Lucene search

K
nvd[email protected]NVD:CVE-2007-3510
HistoryOct 29, 2007 - 9:46 p.m.

CVE-2007-3510

2007-10-2921:46:00
CWE-119
web.nvd.nist.gov
5

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.829

Percentile

98.5%

Buffer overflow in the IMAP service in IBM Lotus Domino before 6.5.6 FP2, and 7.x before 7.0.3, allows remote authenticated users to execute arbitrary code via a long mailbox name.

Affected configurations

Nvd
Node
ibmlotus_dominoMatch6.5.5
OR
ibmlotus_dominoMatch6.5.5fp1
OR
ibmlotus_dominoMatch6.5.5fp2
OR
ibmlotus_dominoMatch6.5.5fp3
OR
ibmlotus_dominoMatch6.5.6
OR
ibmlotus_dominoMatch6.5.6fp1
OR
ibmlotus_dominoMatch7.0
OR
ibmlotus_dominoMatch7.0.2
OR
ibmlotus_dominoMatch7.0.2fp1
OR
ibmlotus_dominoMatch7.0.2fp2
VendorProductVersionCPE
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:*:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:fp1:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:fp2:*:*:*:*:*
ibmlotus_domino6.5.5cpe:2.3:a:ibm:lotus_domino:6.5.5:*:fp3:*:*:*:*:*
ibmlotus_domino6.5.6cpe:2.3:a:ibm:lotus_domino:6.5.6:*:*:*:*:*:*:*
ibmlotus_domino6.5.6cpe:2.3:a:ibm:lotus_domino:6.5.6:*:fp1:*:*:*:*:*
ibmlotus_domino7.0cpe:2.3:a:ibm:lotus_domino:7.0:*:*:*:*:*:*:*
ibmlotus_domino7.0.2cpe:2.3:a:ibm:lotus_domino:7.0.2:*:*:*:*:*:*:*
ibmlotus_domino7.0.2cpe:2.3:a:ibm:lotus_domino:7.0.2:*:fp1:*:*:*:*:*
ibmlotus_domino7.0.2cpe:2.3:a:ibm:lotus_domino:7.0.2:*:fp2:*:*:*:*:*

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.829

Percentile

98.5%