4.3
CVSSv2

CVE-2008-0862

Published: 21/02/2008 Updated: 08/03/2011
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

IBM Lotus Notes 6.0, 6.5, 7.0, and 8.0 signs an unsigned applet when a user forwards an email message to another user, which allows user-assisted remote malicious users to bypass Execution Control List (ECL) protection.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm lotus notes 6.0

ibm lotus notes 6.5

ibm lotus notes 7.0

ibm lotus notes 8.0