Vulnerability Database

296,172

Total vulnerabilities in the database

CVE-2021-27760

An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime chat user could cause Remote Code Execution on another chat client by sending a specially formatted message through chat containing Javascript code.

  • Published: May 6, 2022
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-27760
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L

CVSS v2:

  • Severity: Medium
  • Score: 6
  • AV:N/AC:M/Au:S/C:P/I:P/A:P

No CWE or OWASP classifications available.

Software From Fixed in
hcltech / hcl_inotes 11.0.1-fixpack1 11.0.1-fixpack1.x
hcltech / hcl_inotes 11.0.1 11.0.1.x
hcltech / hcl_inotes 11.0.0 11.0.0.x
hcltech / hcl_inotes 11.0.1-fixpack3 11.0.1-fixpack3.x
hcltech / hcl_inotes 11.0.1-fixpack4 11.0.1-fixpack4.x
hcltech / hcl_inotes 11.0.1-fixpack2 11.0.1-fixpack2.x