CVE-2020-4107

HIGH

HCL Domino - Authenticated Insufficient Access Control

Title source: llm
STIX 2.1

Description

HCL Domino is affected by an Insufficient Access Control vulnerability. An authenticated attacker with local access to the system could exploit this vulnerability to attain escalation of privileges, denial of service, or information disclosure.

References (1)

Core 1
Core References

Scores

CVSS v3 8.8
EPSS 0.0004
EPSS Percentile 12.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-284
Status published
Products (3)
hcltech/domino 9.0
hcltech/domino 10.0
hcltech/domino 11.0
Published May 19, 2022
Tracked Since Feb 18, 2026