Stack-Based Buffer Overflow in IBM Lotus Domino Web Access
CVE-2007-4474
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 27 December 2007
What is CVE-2007-4474?
The IBM Lotus Domino Web Access features multiple stack-based buffer overflows in its ActiveX control components, notably within the inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll files. These vulnerabilities enable attackers to exploit the system by executing arbitrary code through specially crafted input, such as a long General_ServerName property value provided during function calls to InstallBrowserHelperDll in the Upload Module. This flaw poses significant risks to users by allowing remote execution of malicious payloads, thereby compromising system integrity.