CVE Vulnerabilities

CVE-2020-4128

Published: Dec 01, 2020 | Modified: Jul 21, 2021
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the ID Vault service.

Affected Software

Name Vendor Start Version End Version
Domino Hcltech 9.0.0 (including) 9.0.1 (including)
Domino Hcltech 10.0.0 (including) 10.0.1 (including)
Domino Hcltech 11.0.0 (including) 11.0.1 (including)
Domino Hcltech 10.0.1 (including) 10.0.1 (including)
Domino Hcltech 10.0.1-fix_pack_1 (including) 10.0.1-fix_pack_1 (including)
Domino Hcltech 10.0.1-fix_pack_2 (including) 10.0.1-fix_pack_2 (including)
Domino Hcltech 10.0.1-fix_pack_3 (including) 10.0.1-fix_pack_3 (including)
Domino Hcltech 10.0.1-fix_pack_4 (including) 10.0.1-fix_pack_4 (including)

References