Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-14232

Опубликовано: 18 дек. 2020
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Низкий

Описание

A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow. This could allow the attacker to crash the program or inject code into the system which would execute with the privileges of the currently logged in user.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hcltech:notes:9.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:-:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if1:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if2:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if3:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if4:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if5:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if6:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:9.0.1:fp10if7:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.00843
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow. This could allow the attacker to crash the program or inject code into the system which would execute with the privileges of the currently logged in user.

EPSS

Процентиль: 74%
0.00843
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

NVD-CWE-Other