CVE-2020-14260
Severity CVSS v4.0:
Pending analysis
Type:
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
02/12/2020
Last modified:
04/12/2020
Description
HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an attacker to crash Domino or execute attacker-controlled code on the server system.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* | 9.0.0 (including) | 9.0.1 (including) |
| cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* | 10.0.0 (including) | 10.0.1 (including) |
| cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* | 11.0.0 (including) | 11.0.1 (including) |
To consult the complete list of CPE names with products and versions, see this page



