
CVE-2018-1409
https://notcve.org/view.php?id=CVE-2018-1409
19 Feb 2018 — IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708. IBM Notes Diagnostics (IBM Client Application Access e IBM Notes) podría permitir que un usuario local ejecute comandos en el sistema. Esto se logra al manipular una línea de comandos enviada mediante el IPC de la memoria com... • http://www.ibm.com/support/docview.wss?uid=swg22010766 •

CVE-2018-1410
https://notcve.org/view.php?id=CVE-2018-1410
19 Feb 2018 — IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138709. IBM Notes Diagnostics (IBM Client Application Access e IBM Notes) podría permitir que un usuario local ejecute comandos en el sistema. Esto se logra al manipular una línea de comandos enviada mediante el IPC de la memoria com... • http://www.ibm.com/support/docview.wss?uid=swg22010766 •

CVE-2018-1411
https://notcve.org/view.php?id=CVE-2018-1411
19 Feb 2018 — IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138710. IBM Notes Diagnostics (IBM Client Application Access e IBM Notes) podría permitir que un usuario local ejecute comandos en el sistema. Esto se logra al manipular una línea de comandos enviada mediante el IPC de la memoria com... • http://www.ibm.com/support/docview.wss?uid=swg22010766 •

CVE-2017-1711
https://notcve.org/view.php?id=CVE-2017-1711
13 Feb 2018 — IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masquerading as a windows DLL in the temp directory. IBM X-Force ID: 134532. Las versiones 8.5 y 9.0 de IBM iNotes SUService pueden manipularse para que ejecuten código malicioso de un DLL disfrazado de DLL de windows en el directorio temp. IBM X-Force ID: 134532. • http://www.ibm.com/support/docview.wss?uid=swg22010774 • CWE-426: Untrusted Search Path •

CVE-2017-1714
https://notcve.org/view.php?id=CVE-2017-1714
13 Feb 2018 — IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain System privilege. IBM X-Force ID: 134633. IBM Notes and Domino NSD 8.5 y 9.0 podrían permitir que un usuario local autenticado sin privilegios administrativos obtenga privilegios System. IBM X-Force ID: 134633. • http://www.ibm.com/support/docview.wss?uid=swg22010776 •

CVE-2017-1720
https://notcve.org/view.php?id=CVE-2017-1720
13 Feb 2018 — IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafting a command line sent via the shared memory IPC. IBM X-Force ID: 134807. Las versiones 8.5 y 9.0 de IBM Notes podrían permitir que un atacante local ejecute comandos arbitrarios manipulando cuidadosamente una línea de comandos enviada mediante el IPC de la memoria compartida. IBM X-Force ID: 134807. • http://www.ibm.com/support/docview.wss?uid=swg22010766 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •

CVE-2016-0270
https://notcve.org/view.php?id=CVE-2016-0270
08 Feb 2017 — IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses random nonce generation, which makes it easier for remote attackers to obtain the authentication key and spoof data by leveraging the reuse of a nonce in a session and a "forbidden attack." NOTE: this CVE has been incorrectly used for GCM nonce reuse issues in other products; see CVE-2016-10213 for the A10 issue, CVE-2016-10212 for the Radware issue, and CVE-2017-5933 for the Citrix issue. IBM ... • http://www-01.ibm.com/support/docview.wss?uid=swg21979604 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •