IBM Lotus iNotes ActiveX Control and UltraLite Vulnerabilities
RISK: Medium Risk
Multiple vulnerabilitieshave been identified in IBM Lotus iNotes (Domino Web Access), which could be exploited by remote attackers to manipulate data or compromise an affected system.
1. Due to a buffer overflow error in the iNotes ActiveX control.
2. Due to unspecified errors related to UltraLite.
3. Due to errors related to "Get Filter" and "Referer Check", which could allow cross site scripting or request forgery attacks.
Impact
- Remote Code Execution
System / Technologies affected
- IBM Lotus iNotes (Domino Web Access) versions 8.0.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply cumulative Hotfix 229.281 for IBM Lotus Domino 8.0.2FP4 :
http://www.ibm.com/support/fixcentral
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with