CVE-2020-14273

HIGH

HCL Domino - Unauthenticated Denial of Service via Public API Input

Title source: llm
STIX 2.1

Description

HCL Domino is susceptible to a Denial of Service (DoS) vulnerability due to insufficient validation of input to its public API. An unauthenticated attacker could could exploit this vulnerability to crash the Domino server.

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0069
EPSS Percentile 72.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (3)
hcltech/domino 10.0.1 (6 CPE variants)
hcltech/domino 11.0.0
hcltech/domino 11.0.1 (2 CPE variants)
Published Dec 28, 2020
Tracked Since Feb 18, 2026