Описание
Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command.
Ссылки
- ExploitPatchVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:lotus:domino_enterprise_server:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_enterprise_server:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_enterprise_server:5.0.2b:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_enterprise_server:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_enterprise_server:5.0.4:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_mail_server:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_mail_server:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_mail_server:5.0.2b:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_mail_server:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:lotus:domino_mail_server:5.0.4:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.028
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command.
EPSS
Процентиль: 86%
0.028
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other