Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a DLL file, aka SPR PRAD82YJW2.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Lotus Notes参数注入漏洞
Vulnerability Description
IBM Lotus Notes是美国IBM公司的一个协同办公平台,包含电子邮件、日历、日程安排和业务应用的整合,具有完善的数据库技术、工作流控制和可靠的安全机制。 IBM Lotus Notes 8.0.2 FP6之前的8.0.x版本以及8.5.1 FP5之前的8.5.x版本中存在参数注入漏洞。远程攻击者可借助包含--launcher.library选项的cai:// URL执行任意代码,该选项为DLL文件指定了UNC共享路径名称。
CVSS Information
N/A
Vulnerability Type
N/A