Vulnerabilities > CVE-2003-0123 - Buffer Overflow Denial Of Service vulnerability in IBM Lotus Domino and Lotus Notes Client

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
ibm
nessus

Summary

Buffer overflow in Web Retriever client for Lotus Notes/Domino R4.5 through R6 allows remote malicious web servers to cause a denial of service (crash) via a long HTTP status line.

Nessus

NASL familyGain a shell remotely
NASL idDOMINO5_OVERFLOWS.NASL
descriptionThe remote Lotus Domino server, according to its version number, is affected by various buffer overflows affecting it when it acts as a client (through webretriever) or in LDAP. An attacker may use these to disable this server or execute arbitrary commands on the remote host.
last seen2020-06-01
modified2020-06-02
plugin id11338
published2003-03-10
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11338
titleIBM Lotus Domino < 5.0.12 / 6.0.1 Multiple Vulnerabilities