CVE-2020-14258

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
21/11/2020
Last modified:
01/12/2020

Description

HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input. A remote unauthenticated attacker could exploit this vulnerability using a specially-crafted email message to hang the client. Versions 9, 10 and 11 are affected.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:notes:9.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:10.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:notes:11.0:*:*:*:*:*:*:*