Buffer Overflow in IBM Lotus iNotes ActiveX Control
CVE-2012-2175

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
20 June 2012

Summary

A buffer overflow vulnerability exists in the Attachment_Times method of an ActiveX control within the dwa85W.dll file in IBM Lotus iNotes versions before 8.5.3 FP2. This flaw enables remote attackers to exploit this weakness by sending a specially crafted argument, leading to the potential execution of arbitrary code on the affected system.

References

EPSS Score

66% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.