CVE-2007-5544

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/10/2007
Last modified:
09/04/2025

Description

IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak permissions (Everyone:Full Control) for memory mapped files (shared memory) in IPC, which allows local users to obtain sensitive information, or inject Lotus Script or other character sequences into a session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:lotus_domino:*:*:*:*:*:*:*:* 6.5.5 (excluding)
cpe:2.3:a:ibm:lotus_domino:*:*:*:*:*:*:*:* 7.0 (including) 7.0.2 (excluding)
cpe:2.3:a:ibm:lotus_domino:6.5.5:-:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_domino:7.0.2:-:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:*:*:*:*:*:*:*:* 6.5.5 (including)
cpe:2.3:a:ibm:lotus_notes:*:*:*:*:*:*:*:* 7.0.0 (including) 7.0.3 (excluding)