Ibm Client Application Access vulnerabilities
7 known vulnerabilities affecting ibm/client_application_access.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2018-1410HIGHCVSS 7.8v1.0.0.1v1.0.1+1 more2018-02-19
CVE-2018-1410 [HIGH] CVE-2018-1410: IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to exec
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138709.
cvelistv5nvd
CVE-2018-1409HIGHCVSS 7.8v1.0.0.1v1.0.1+1 more2018-02-19
CVE-2018-1409 [HIGH] CVE-2018-1409: IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to exec
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708.
cvelistv5nvd
CVE-2018-1411HIGHCVSS 7.8v1.0.0.1v1.0.1+1 more2018-02-19
CVE-2018-1411 [HIGH] CVE-2018-1411: IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to exec
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138710.
cvelistv5nvd
CVE-2017-1714HIGHCVSS 7.8v1.0.1.0v1.0.1.1+2 more2018-02-13
CVE-2017-1714 [HIGH] CVE-2017-1714: IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative
IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain System privilege. IBM X-Force ID: 134633.
cvelistv5nvd
CVE-2017-1711HIGHCVSS 7.8v1.0.1.0v1.0.1.1+2 more2018-02-13
CVE-2017-1711 [HIGH] CWE-426 CVE-2017-1711: IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masqueradin
IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masquerading as a windows DLL in the temp directory. IBM X-Force ID: 134532.
cvelistv5nvd
CVE-2017-1720MEDIUMCVSS 5.3v1.0.1.0v1.0.1.1+3 more2018-02-13
CVE-2017-1720 [MEDIUM] CWE-77 CVE-2017-1720: IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafti
IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafting a command line sent via the shared memory IPC. IBM X-Force ID: 134807.
cvelistv5nvd
CVE-2016-0270MEDIUMCVSS 5.9v1.0.0.12017-02-08
CVE-2016-0270 [MEDIUM] CWE-200 CVE-2016-0270: IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and
IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses random nonce generation, which makes it easier for remote attackers to obtain the authentication key and spoof data by leveraging the reuse of a nonce in a session and a "forbidden attack." NOTE: this CVE has been incorrectly used for GCM
nvd