Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2020-14232

A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow. This could allow the attacker to crash the program or inject code into the system which would execute with the privileges of the currently logged in user.

  • Published: Dec 18, 2020
  • Updated: Apr 13, 2023
  • CVE: CVE-2020-14232
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.8
  • AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 9
  • AV:N/AC:L/Au:S/C:C/I:C/A:C

No CWE or OWASP classifications available.

Software From Fixed in
hcltech / notes 9.0 9.0.x
hcltech / notes 9.0.1-fp10 9.0.1-fp10.x
hcltech / notes 9.0.1-fp10if1 9.0.1-fp10if1.x
hcltech / notes 9.0.1-fp10if2 9.0.1-fp10if2.x
hcltech / notes 9.0.1-fp10if3 9.0.1-fp10if3.x
hcltech / notes 9.0.1-fp10if4 9.0.1-fp10if4.x
hcltech / notes 9.0.1-fp10if5 9.0.1-fp10if5.x
hcltech / notes 9.0.1-fp10if6 9.0.1-fp10if6.x
hcltech / notes 9.0.1-fp10if7 9.0.1-fp10if7.x
hcltech / notes 9.0.1 9.0.1.x