4.6
CVSSv2

CVE-2020-4097

Published: 05/11/2020 Updated: 19/11/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1, a vulnerability in the input parameter handling of the Notes Client could potentially be exploited by an attacker resulting in a buffer overflow. This could enable an malicious user to crash HCL Notes or execute attacker-controlled code on the client.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hcltech notes

hcltech notes 9.0.1

hcltech notes 10.0.0

hcltech notes 10.0.1