CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS
Percentile
46.5%
HCL Domino is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could allow a remote unauthenticated attacker to crash the application or execute arbitrary code via a crafted Lotus Ami Pro file. This is different from the vulnerability described in CVE-2022-44754. This vulnerability applies to software previously licensed by IBM.
Vendor | Product | Version | CPE |
---|---|---|---|
hcltech | domino | 9.0 | cpe:2.3:a:hcltech:domino:9.0:*:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:*:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:-:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_10_interim_fix_3:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_10_interim_fix_4:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_10_interim_fix_5:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_8:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_8_interim_fix_1:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_8_interim_fix_2:*:*:*:*:*:* |
hcltech | domino | 9.0.1 | cpe:2.3:a:hcltech:domino:9.0.1:feature_pack_8_interim_fix_3:*:*:*:*:*:* |