Описание
Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC network share pathname to provide an alternate notes.ini configuration file to notes.exe.
Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC network share pathname to provide an alternate notes.ini configuration file to notes.exe.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2004-0480
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16496
- http://marc.info/?l=bugtraq&m=108843896506099&w=2
- http://www-1.ibm.com/support/docview.wss?rs=475/context=SSKTWP&uid=swg21169510
- http://www.idefense.com/application/poi/display?id=111&type=vulnerabilities
- http://www.securityfocus.com/bid/10600
Связанные уязвимости
nvd
почти 21 год назад
Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC network share pathname to provide an alternate notes.ini configuration file to notes.exe.