Remote Code Execution in IBM Lotus Notes 8.x via Malicious URL Handler
CVE-2012-2174

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
20 June 2012

Summary

A vulnerability exists in the URL handler of IBM Lotus Notes 8.x prior to version 8.5.3 FP2. This flaw permits remote attackers to execute arbitrary code by crafting malicious notes:// URLs. When users interact with such a URL, it can exploit the vulnerability, potentially compromising the system's integrity and security.

References

EPSS Score

68% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.