CVE Vulnerabilities

CVE-2018-1409

Published: Feb 19, 2018 | Modified: Oct 03, 2019
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708.

Affected Software

Name Vendor Start Version End Version
Notes Ibm 8.5.1.5 (including) 8.5.1.5 (including)
Notes Ibm 8.5.2.4 (including) 8.5.2.4 (including)
Notes Ibm 8.5.3.6 (including) 8.5.3.6 (including)
Notes Ibm 9.0 (including) 9.0 (including)
Notes Ibm 9.0.1.9 (including) 9.0.1.9 (including)

References