CVE Vulnerabilities

CVE-2020-4089

Published: Jun 26, 2020 | Modified: Jul 21, 2021
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

HCL Notes is vulnerable to an information leakage vulnerability through its support for the mailto protocol. This vulnerability could result in files from the users filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.

Affected Software

Name Vendor Start Version End Version
Notes Hcltech 9.0 (including) 9.0 (including)
Notes Hcltech 10.0 (including) 10.0 (including)
Notes Hcltech 11.0 (including) 11.0 (including)

References