9.3
CVSSv2

CVE-2012-2174

Published: 20/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The URL handler in IBM Lotus Notes 8.x prior to 8.5.3 FP2 allows remote malicious users to execute arbitrary code via a crafted notes:// URL.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm lotus notes 8.0

ibm lotus notes 8.5.3

ibm lotus notes 8.5.2.3

ibm lotus notes 8.0.0

ibm lotus notes 8.0.2.2

ibm lotus notes 8.5.1.5

ibm lotus notes 8.5.1.3

ibm lotus notes 8.5

ibm lotus notes 8.5.1

ibm lotus notes 8.0.2.3

ibm lotus notes 8.5.1.0

ibm lotus notes 8.5.1.4

ibm lotus notes 8.5.2.0

ibm lotus notes 8.0.2.0

ibm lotus notes 8.0.2.1

ibm lotus notes 8.5.1.1

ibm lotus notes 8.0.1

ibm lotus notes 8.5.1.2

ibm lotus notes 8.5.0.0

ibm lotus notes 8.5.2.1

ibm lotus notes 8.5.3.1

ibm lotus notes 8.5.2.2

ibm lotus notes 8.0.2

ibm lotus notes 8.0.2.4

ibm lotus notes 8.0.2.5

ibm lotus notes 8.5.0.1

ibm lotus notes 8.0.2.6

Exploits

## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = ExcellentRanking ...