Vulnerabilities > Hcltech

DATE CVE VULNERABILITY TITLE RISK
2020-12-14 CVE-2020-14244 Out-of-bounds Write vulnerability in Hcltech Domino
A vulnerability in the MIME message handling of the Domino server (versions 9 and 10) could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow.
network
low complexity
hcltech CWE-787
critical
9.8
2020-12-02 CVE-2020-4102 Classic Buffer Overflow vulnerability in Hcltech Notes
HCL Notes is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input.
local
low complexity
hcltech CWE-120
6.7
2020-12-02 CVE-2020-14260 Classic Buffer Overflow vulnerability in Hcltech Domino 10.0.0/11.0.0/9.0.1
HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input.
network
low complexity
hcltech CWE-120
critical
9.8
2020-12-01 CVE-2020-4128 Unspecified vulnerability in Hcltech Domino
HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service.
network
low complexity
hcltech
5.3
2020-12-01 CVE-2020-4129 Unspecified vulnerability in Hcltech HCL Domino 10.0.1/9.0.1
HCL Domino is susceptible to a lockout policy bypass vulnerability in the LDAP service.
network
low complexity
hcltech
5.3
2020-12-01 CVE-2020-4126 Missing Encryption of Sensitive Data vulnerability in Hcltech HCL Inotes
HCL iNotes is susceptible to a sensitive cookie exposure vulnerability.
network
high complexity
hcltech CWE-311
5.9
2020-11-30 CVE-2020-4127 Cross-Site Request Forgery (CSRF) vulnerability in Hcltech HCL Domino 10.0.1/9.0.1
HCL Domino is susceptible to a Login CSRF vulnerability.
network
low complexity
hcltech CWE-352
6.5
2020-11-21 CVE-2020-14258 Improper Input Validation vulnerability in Hcltech Notes 10.0/11.0/9.0
HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input.
network
low complexity
hcltech CWE-20
7.5
2020-11-21 CVE-2020-14234 Improper Input Validation vulnerability in Hcltech Domino 10.0.0/9.0/9.0.1
HCL Domino is susceptible to a Denial of Service vulnerability due to improper validation of user-supplied input, potentially giving an attacker the ability to crash the server.
network
low complexity
hcltech CWE-20
7.5
2020-11-21 CVE-2020-14230 Improper Input Validation vulnerability in Hcltech Domino
HCL Domino is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input.
network
low complexity
hcltech CWE-20
7.5