6.8
CVSSv2

CVE-2016-0304

Published: 29/06/2016 Updated: 16/10/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Java Console in IBM Domino 8.5.x prior to 8.5.3 FP6 IF13 and 9.x prior to 9.0.1 FP6, when a certain unsupported configuration involving UNC share pathnames is used, allows remote malicious users to bypass authentication and possibly execute arbitrary code via unspecified vectors, aka SPR KLYHA7MM3J. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-0920.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm domino 8.5.3.6

ibm domino 8.5.3.5

ibm domino 8.5.3.4

ibm domino 8.5.3.2

ibm domino 8.5.3

ibm domino 8.5.3.3

ibm domino 8.5.3.1

ibm domino 8.5.2.1

ibm domino 8.5.2.4

ibm domino 8.5.2.3

ibm domino 8.5.2.2

ibm domino 8.5.2

ibm domino 8.5.1.3

ibm domino 8.5.1.2

ibm domino 8.5.1.1

ibm domino 8.5.1

ibm domino 8.5.1.4

ibm domino 8.5.1.5

ibm domino 8.5.0

ibm domino 9.0.1.4

ibm domino 9.0.1.3

ibm domino 9.0.1.2

ibm domino 9.0.1.1

ibm domino 9.0.1.5

ibm domino 9.0.1