Showing 4 vulnerabilities on this page for Domino

Signals CISA KEV Ransomware Nuclei
IBM vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

IBM Domino 9.0 and 9.0.1 could allow an attacker to execute commands on the system by triggering a buffer overflow in the parsing of command line arguments passed to nsd.exe. IBM X-force ID: 148687.

CWE-119Dec 20, 2018
CVSS8.4v3.0EPSS0.482%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

IBM Domino 8.5 and 9.0 could allow an attacker to steal credentials using multiple sessions and large amounts of data using Domino TLS Key Exchange validation. IBM X-Force ID: 117918.

CWE-20Jun 7, 2017
CVSS9.8v3.1EPSS1.94%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

IBM domino Improper Restriction of Operations within the Bounds of a Memory Buffer

IBM Domino 8.5.3, and 9.0 is vulnerable to a stack based overflow in the IMAP service that could allow an authenticated attacker to execute arbitrary code by specifying a large mailbox name. IBM X-Force ID: 124749.

CWE-119Apr 25, 2017
CVSS8.8v3.0EPSS6.79%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

IBM domino Out-of-bounds Write

Buffer overflow in the CRAM-MD5 authentication mechanism in the IMAP server (nimap.exe) in IBM Lotus Domino before 6.5.6 and 7.x before 7.0.2 FP1 allows remote attackers to cause a denial of service via a long username.

Mar 28, 2007
CVSS10.0v2.0EPSS61.2%PoCs3SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX