Buffer Overflow Vulnerability in HCL Notes Client
CVE-2020-4097
6.8MEDIUM
Summary
In specific versions of HCL Notes, a vulnerability exists in how the Notes Client handles input parameters. Attackers may exploit this to perform a buffer overflow, potentially leading to the application crashing or allowing the execution of arbitrary code on the system. This vulnerability poses a significant risk, especially when operating in environments that utilize HCL Notes for critical business operations.
Affected Version(s)
HCL Notes HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved