CVE-2020-4128

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/12/2020
Last modified:
21/07/2021

Description

HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the ID Vault service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* 9.0.0 (including) 9.0.1 (including)
cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* 10.0.0 (including) 10.0.1 (including)
cpe:2.3:a:hcltech:domino:*:*:*:*:*:*:*:* 11.0.0 (including) 11.0.1 (including)
cpe:2.3:a:hcltech:domino:10.0.1:-:*:*:*:*:*:*
cpe:2.3:a:hcltech:domino:10.0.1:fix_pack_1:*:*:*:*:*:*
cpe:2.3:a:hcltech:domino:10.0.1:fix_pack_2:*:*:*:*:*:*
cpe:2.3:a:hcltech:domino:10.0.1:fix_pack_3:*:*:*:*:*:*
cpe:2.3:a:hcltech:domino:10.0.1:fix_pack_4:*:*:*:*:*:*