HCL iNotes is susceptible to a link to non-existent domain vulnerability.
CVE-2022-27547

6.1MEDIUM

Key Information:

Vendor
CVE Published:
29 August 2022

Summary

HCL iNotes is susceptible to a link to non-existent domain vulnerability. An attacker could use this vulnerability to trick a user into supplying sensitive information such as username, password, credit card number, etc.

Affected Version(s)

HCL iNotes 9, 10, 11, 12

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.