CVE-2000-0891
IBM Lotus Notes < 5.02 - Remote Code Execution via Malicious Email Attachment
Title source: llmDescription
A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.
References (3)
Core 3
Core References
Exploit, Patch, Third Party Advisory, US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/5962
Various Sources x_refsource_confirm
http://www.notes.net/R5FixList.nsf/Search%21SearchView&Query=CBAT45TU9S
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5045
Scores
EPSS
0.0299
EPSS Percentile
85.9%
Details
Status
published
Products (1)
ibm/lotus_notes
< 5.02
Published
Jul 21, 2001
Tracked Since
Feb 18, 2026