CVE-2000-1138IBM Lotus Notes vulnerability

7 documents5 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 35.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 9
Latest updateApr 30

Description

Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDibm/lotus_notes5.0.5+5

🔴Vulnerability Details

2
GHSA
GHSA-34pv-6c59-fw4x: Lotus Notes R5 client R52022-04-30
CVEList
CVE-2000-1138: Lotus Notes R5 client R52000-12-19

💥Exploits & PoCs

3
Exploit-DB
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (3)2000-04-24
Exploit-DB
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (1)2000-04-24
Exploit-DB
Solaris 2.6/7.0 - 'lpset -r' Local Buffer Overflow (2)2000-04-24

📋Vendor Advisories

1
Chrome
Stable Channel Update for Desktop: CVE-2022-11362022-03-29
CVE-2000-1138 — IBM Lotus Notes vulnerability | cvebase