Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm notes vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-1941
Cross-site scripting (XSS) vulnerability in the Active Content Filter feature in Domino Web Access (DWA) in IBM Lotus Notes prior to 6.5.6 and 7.x prior to 7.0.2 FP1 allows remote malicious users to inject arbitrary web script or HTML via a multipart/related e-mail message, a dif...
Ibm Lotus Notes 6.5.5
Ibm Lotus Notes 7.0.1
Ibm Lotus Notes 7.0
NA
CVE-2008-1217
Unspecified vulnerability in nlnotes.dll in the client in IBM Lotus Notes 6.5, 7.0.x prior to 7.0.2 CCH, and 8.0.x prior to 8.0.1 allows remote malicious users to execute arbitrary code via a crafted attachment in an e-mail message sent over SMTP, a variant of CVE-2007-6706.
Ibm Lotus Notes 6.5
Ibm Lotus Notes 7.0.2
Ibm Lotus Notes 8.0.0
NA
CVE-2010-1487
IBM Lotus Notes 7.0, 8.0, and 8.5 stores administrative credentials in cleartext in SURunAs.exe, which allows local users to obtain sensitive information by examining this file, aka SPR JSTN837SEG.
Ibm Lotus Notes 7.0
Ibm Lotus Notes 8.0
Ibm Lotus Notes 8.5
NA
CVE-2010-1608
Stack-based buffer overflow in IBM Lotus Notes 8.5 and 8.5fp1, and possibly other versions, allows remote malicious users to execute arbitrary code via unknown attack vectors, as demonstrated by the vd_ln module in VulnDisco 9.0. NOTE: as of 20100222, this disclosure has no actio...
Ibm Lotus Notes 8.5
Ibm Lotus Notes 8.5.1
Ibm Lotus Notes 8.5.1.1
NA
CVE-2012-4824
Open redirect vulnerability in servlet/traveler in IBM Lotus Notes Traveler 8.5.3 prior to 8.5.3.3 Interim Fix 1 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirectURL parameter.
Ibm Lotus Notes Traveler 8.5.3.1
Ibm Lotus Notes Traveler 8.5.3.2
Ibm Lotus Notes Traveler 8.5.3.3
Ibm Lotus Notes Traveler 8.5.3
5.9
CVSSv3
CVE-2016-0270
IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 up to and including 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses random nonce generation, which makes it easier for remote malicious users to obtain the authentication key and spoof data by leveraging the reuse of a no...
Ibm Domino 9.0.1.5
Ibm Client Application Access 1.0.0.1
Ibm Notes 9.0.1.4
Ibm Notes 9.0.1.5
Ibm Notes 9.0.1.3
Ibm Domino 9.0.1.3
Ibm Domino 9.0.1.4
1 Github repository
NA
CVE-2006-1948
The "Add Sender to Address Book" operation (AddSenderToAddressBook.lss) and NameHelper.lss in IBM Lotus Notes 6.0 and 6.5 prior to 20060331 do not properly store information in the Personal Address Book when multiple messages are checked and a message uses AltFrom, whic...
Ibm Lotus Notes 6.0
Ibm Lotus Notes 6.5
NA
CVE-2004-0480
Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote malicious users to execute arbitrary code via a notes: URI that uses a UNC network share pathname to provide an alternate notes.ini configuration file to notes.exe.
Ibm Lotus Notes 6.5
Ibm Lotus Notes 6.0.3
NA
CVE-2001-1504
Lotus Notes R5 Client 4.6 allows remote malicious users to execute arbitrary commands via a Lotus Notes object with code in an event, which is automatically executed when the user processes the e-mail message.
Ibm Lotus Notes 4.6
Ibm Lotus Notes 5.0
NA
CVE-2012-4820
Unspecified vulnerability in the JRE component in IBM Java 7 SR2 and previous versions, Java 6.0.1 SR3 and previous versions, Java 6 SR11 and previous versions, Java 5 SR14 and previous versions, and Java 142 SR13 FP13 and previous versions; as used in IBM Rational Host On-Demand...
Ibm Java
Ibm Lotus Domino 8.0
Ibm Lotus Domino 8.0.2.3
Ibm Lotus Domino 8.5.0
Ibm Lotus Domino 8.5.1.5
Ibm Lotus Domino 8.5.2.1
Ibm Lotus Notes 8.0
Ibm Lotus Notes 8.0.1
Ibm Lotus Notes 8.0.2.3
Ibm Lotus Notes 8.0.2.5
Ibm Lotus Notes 8.5.1.1
Ibm Lotus Notes 8.5.1.3
Ibm Lotus Notes 8.5.3
Ibm Lotus Notes 8.5.3.2
Ibm Lotus Notes Traveler 8.0
Ibm Lotus Notes Traveler 8.0.1.2
Ibm Lotus Notes Traveler 8.5.0.0
Ibm Lotus Notes Traveler 8.5.1.3
Ibm Lotus Notes Traveler 8.5.3
Ibm Rational Change 5.2
Ibm Rational Host On-demand 1.6.0.12
Ibm Rational Host On-demand 11.0.3.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »