6.8
CVSSv2

CVE-2013-2977

Published: 10/05/2013 Updated: 29/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in IBM Notes 8.5.x prior to 8.5.3 FP4 Interim Fix 1 and 9.x prior to 9.0 Interim Fix 1 on Windows, and 8.5.x prior to 8.5.3 FP5 and 9.x prior to 9.0.1 on Linux, allows remote malicious users to execute arbitrary code via a malformed PNG image in a previewed e-mail message, aka SPR NPEI96K82Q.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm lotus notes 8.5.2.3

ibm lotus notes 8.5.1

ibm lotus notes 8.5.1.3

ibm lotus notes 8.5.1.4

ibm lotus notes 8.5.3.3

ibm lotus notes 8.5.3.2

ibm lotus notes 8.5.1.2

ibm lotus notes 8.5.0.0

ibm lotus notes 8.5.3.1

ibm lotus notes 8.5.3

ibm lotus notes 8.5.0.1

ibm lotus notes 8.5.1.5

ibm lotus notes 8.5.2.2

ibm lotus notes 8.5

ibm lotus notes 8.5.3.4

ibm lotus notes 8.5.1.1

ibm lotus notes 8.5.1.0

ibm lotus notes 8.5.2.0

ibm lotus notes 8.5.2.1

ibm lotus_notes 9.0.0.0

ibm lotus_notes 8.5.2.3

ibm lotus_notes 8.5.1

ibm lotus_notes 8.5.1.3

ibm lotus_notes 8.5.1.4

ibm lotus_notes 8.5.3.3

ibm lotus_notes 8.5.3.2

ibm lotus_notes 8.5.1.2

ibm lotus_notes 8.5.0.0

ibm lotus_notes 8.5.3.4

ibm lotus_notes 8.5.3.1

ibm lotus_notes 8.5.3

ibm lotus_notes 8.5.0.1

ibm lotus_notes 8.5.1.5

ibm lotus_notes 8.5.2.2

ibm lotus_notes 8.5

ibm lotus_notes 8.5.1.1

ibm lotus_notes 8.5.1.0

ibm lotus_notes 8.5.2.0

ibm lotus_notes 8.5.2.1

Github Repositories

IBM Lotus Notes PNG Integer Overflow

IBM Lotus Notes PNG Integer Overflow - CVE-2013-2977 IBM Lotus Notes is the client of a collaborative client-server plataform, being IBM Lotus Domino the application server The email-client capability is one of its most important and used features IBM Lotus Notes fails to correctly parse a PNG image file embedded in an email Arbitrary code execution is proved possible after