![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.902418 |
Kategorie: | Buffer overflow |
Titel: | IBM Lotus Domino Multiple Remote Buffer Overflow Vulnerabilities |
Zusammenfassung: | IBM Lotus Domino Server is prone to remote buffer overflow vulnerabilities. |
Beschreibung: | Summary: IBM Lotus Domino Server is prone to remote buffer overflow vulnerabilities. Vulnerability Insight: Multiple flaws exist due to: - Error in 'ndiiop.exe' in the DIIOP implementation, which allows remote attackers to execute arbitrary code via a GIOP getEnvironmentString request. - Integer signedness error in 'ndiiop.exe' in the DIIOP implementation, which allows remote attackers to execute arbitrary code via a GIOP client request. - Error in 'nrouter.exe', which allows remote attackers to execute arbitrary code via a long name parameter in a Content-Type header in a malformed Notes calendar meeting request. Vulnerability Impact: Successful exploitation may allow remote attackers to execute arbitrary code in the context of the Lotus Domino server process. Affected Software/OS: IBM Lotus Domino versions prior to 8.5.3 Solution: Upgrade to IBM Lotus Domino version 8.5.3 or later CVSS Score: 10.0 CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-0913 http://zerodayinitiative.com/advisories/ZDI-11-053/ http://secunia.com/advisories/43208 Common Vulnerability Exposure (CVE) ID: CVE-2011-0914 http://zerodayinitiative.com/advisories/ZDI-11-052/ Common Vulnerability Exposure (CVE) ID: CVE-2011-0915 Bugtraq: 20110207 ZDI-11-048: IBM Lotus Domino iCalendar Meeting Request Parsing Remote Code Execution Vulnerability (Google Search) http://www.securityfocus.com/archive/1/516245/100/0/threaded http://zerodayinitiative.com/advisories/ZDI-11-048/ |
Copyright | Copyright (C) 2011 Greenbone AG |
Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |