Page 13 of 130 results (0.019 seconds)

CVSS: 9.8EPSS: 4%CPEs: 14EXPL: 0

31 Dec 2002 — Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP Authenticate header containing certain non-ASCII characters. • http://securitytracker.com/id?1004052 •

CVSS: 9.1EPSS: 2%CPEs: 3EXPL: 0

12 Apr 2002 — Lotus Domino Servers 5.x, 4.6x, and 4.5x allows attackers to bypass the intended Reader and Author access list for a document's object via a Notes API call (NSFDbReadObject) that directly accesses the object. Los servidores Lotus Domino 5.x, 4.6x y 4.5x permiten a atacantes evadir la lista acceso de autores y lectores de un objeto mediante una llamada a la API (interfaz de programación) de Notes que accede directamente al objeto. • http://archives.neohapsis.com/archives/bugtraq/2001-09/0147.html •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

07 Mar 2002 — Buffer overflow in bindsock in Lotus Domino 5.0.4 and 5.0.7 on Linux allows local users to gain root privileges via a long (1) Notes_ExecDirectory or (2) PATH environment variable. Desbordamiento de buffer en bindsock en Lotus Domino 5.0.4 a 5.0.7 en Linux permite a usuarios locales ganar privilegios de root mediante Notes_ExecDirectoryVariable de entorno PATHlargos. • http://www-1.ibm.com/support/docview.wss?uid=swg21095569 •

CVSS: 9.1EPSS: 0%CPEs: 12EXPL: 0

31 Dec 2001 — Lotus Domino server 5.0.9a and earlier allows remote attackers to bypass security restrictions and view Notes database files and possibly sensitive Notes template files (.ntf) via an HTTP request with a large number of "+" characters before the .nsf file extension, which are converted to spaces by Domino. • http://marc.info/?l=bugtraq&m=101284222932568&w=2 •

CVSS: 5.3EPSS: 1%CPEs: 1EXPL: 0

19 Sep 2001 — The default configuration of Lotus Domino server 5.0.8 includes system information (version, operating system, and build date) in the HTTP headers of replies, which allows remote attackers to obtain sensitive information. • http://marc.info/?l=bugtraq&m=100094373621813&w=2 •

CVSS: 9.8EPSS: 2%CPEs: 1EXPL: 0

16 Jul 2001 — Buffer overflows in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. • http://ciac.llnl.gov/ciac/bulletins/l-116.shtml •

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 0

16 Jul 2001 — Format string vulnerabilities in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. • http://ciac.llnl.gov/ciac/bulletins/l-116.shtml •

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 0

16 Jul 2001 — Lotus Domino R5 before R5.0.7a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via miscellaneous packets with semi-valid BER encodings, as demonstrated by the PROTOS LDAPv3 test suite. • http://ciac.llnl.gov/ciac/bulletins/l-116.shtml •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

12 Mar 2001 — Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request. • http://www.ciac.org/ciac/bulletins/j-061.shtml •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 3

01 Jan 1998 — Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command. • https://www.exploit-db.com/exploits/23146 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •