CVE Vulnerabilities

CVE-2020-4089

Published: Jun 26, 2020 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

HCL Notes is vulnerable to an information leakage vulnerability through its support for the mailto protocol. This vulnerability could result in files from the users filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.

Affected Software

NameVendorStart VersionEnd Version
NotesHcltech9.0 (including)9.0 (including)
NotesHcltech10.0 (including)10.0 (including)
NotesHcltech11.0 (including)11.0 (including)

References