Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-4089

Опубликовано: 26 июн. 2020
Источник: nvd
CVSS3: 6.5
CVSS2: 4.3
EPSS Низкий

Описание

HCL Notes is vulnerable to an information leakage vulnerability through its support for the 'mailto' protocol. This vulnerability could result in files from the user's filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hcltech:notes:9.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:10.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:11.0:*:*:*:*:*:*:*

EPSS

Процентиль: 57%
0.00357
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

HCL Notes is vulnerable to an information leakage vulnerability through its support for the 'mailto' protocol. This vulnerability could result in files from the user's filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.

EPSS

Процентиль: 57%
0.00357
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

NVD-CWE-noinfo