Buffer Overflow Vulnerability in HCL Notes Client
CVE-2020-4097

6.8MEDIUM

Key Information:

Status
Vendor
CVE Published:
5 November 2020

Summary

In specific versions of HCL Notes, a vulnerability exists in how the Notes Client handles input parameters. Attackers may exploit this to perform a buffer overflow, potentially leading to the application crashing or allowing the execution of arbitrary code on the system. This vulnerability poses a significant risk, especially when operating in environments that utilize HCL Notes for critical business operations.

Affected Version(s)

HCL Notes HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.