cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2012-6277,https://securityvulnerability.io/vulnerability/CVE-2012-6277,,"Multiple unspecified vulnerabilities in Autonomy KeyView IDOL before 10.16, as used in Symantec Mail Security for Microsoft Exchange before 6.5.8, Symantec Mail Security for Domino before 8.1.1, Symantec Messaging Gateway before 10.0.1, Symantec Data Loss Prevention (DLP) before 11.6.1, IBM Notes 8.5.x, IBM Lotus Domino 8.5.x before 8.5.3 FP4, and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, related to ""a number of underlying issues"" in which ""some of these cases demonstrated memory corruption with attacker-controlled input and could be exploited to run arbitrary code.""",IBM,Autonomy Keyview Idol,7.8,HIGH,0.014059999957680702,false,,false,false,false,,,false,false,,2020-02-21T16:50:17.000Z,0 CVE-2012-6349,https://securityvulnerability.io/vulnerability/CVE-2012-6349,,"Buffer overflow in the .mdb parser in Autonomy KeyView IDOL, as used in IBM Notes 8.5.x before 8.5.3 FP4, allows remote attackers to execute arbitrary code via a crafted file, aka SPR KLYH92XL3W.",IBM,"Lotus Notes,Keyview Idol",,,0.00937000010162592,false,,false,false,false,,,false,false,,2013-07-18T16:51:00.000Z,0 CVE-2011-1512,https://securityvulnerability.io/vulnerability/CVE-2011-1512,,"Heap-based buffer overflow in xlssr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a malformed BIFF record in a .xls Excel spreadsheet attachment, aka SPR PRAD8E3HKR.",IBM,"Lotus Notes,Keyview",,,0.10337000340223312,false,,false,false,false,,,false,false,,2011-05-31T20:00:00.000Z,0 CVE-2011-1218,https://securityvulnerability.io/vulnerability/CVE-2011-1218,,"Buffer overflow in kvarcve.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted .zip attachment, aka SPR PRAD8E3NSP. NOTE: some of these details are obtained from third party information.",IBM,"Lotus Notes,Keyview",,,0.2319200038909912,false,,false,false,false,,,false,false,,2011-05-31T20:00:00.000Z,0 CVE-2009-3037,https://securityvulnerability.io/vulnerability/CVE-2009-3037,,"Buffer overflow in xlssr.dll in the Autonomy KeyView XLS viewer (aka File Viewer for Excel), as used in IBM Lotus Notes 5.x through 8.5.x, Symantec Mail Security, Symantec BrightMail Appliance, Symantec Data Loss Prevention (DLP), and other products, allows remote attackers to execute arbitrary code via a crafted .xls spreadsheet attachment.",IBM,"Lotus Notes,Brightmail Appliance,Data Loss Prevention Detection Servers,Data Loss Prevention Endpoint Agents,Mail Security,Mail Security Appliance,Keyview",,,0.1458200067281723,false,,false,false,false,,,false,false,,2009-09-01T16:00:00.000Z,0 CVE-2007-5405,https://securityvulnerability.io/vulnerability/CVE-2007-5405,,"Multiple buffer overflows in kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a .ag file with (1) a long ENCODING attribute in a *BEGIN tag, (2) a long token, or (3) the initial *BEGIN tag.",IBM,"Lotus Notes,Mail Security Appliance,Mail Security,Keyview,Docconverter",,,0.6505799889564514,false,,false,false,false,,,false,false,,2008-04-10T18:00:00.000Z,0 CVE-2007-5399,https://securityvulnerability.io/vulnerability/CVE-2007-5399,,"Multiple heap-based buffer overflows in emlsr.dll in the EML reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, allow remote attackers to execute arbitrary code via a long (1) To, (2) Cc, (3) Bcc, (4) From, (5) Date, (6) Subject, (7) Priority, (8) Importance, or (9) X-MSMail-Priority header; (10) a long string at the beginning of an RFC2047 encoded-word in a header; (11) a long text string in an RFC2047 encoded-word in a header; or (12) a long Subject header, related to creation of an associated filename.",IBM,"Lotus Notes,Keyview",,,0.26930001378059387,false,,false,false,false,,,false,false,,2008-04-10T18:00:00.000Z,0 CVE-2007-5406,https://securityvulnerability.io/vulnerability/CVE-2007-5406,,"kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, does not properly parse long tokens, which allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted .ag file.",IBM,"Lotus Notes,Mail Security,Keyview",,,0.41971999406814575,false,,false,false,false,,,false,false,,2008-04-10T18:00:00.000Z,0 CVE-2007-6020,https://securityvulnerability.io/vulnerability/CVE-2007-6020,,"Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.",IBM,"Lotus Notes,Mail Security Appliance,Mail Security,Keyview,Docconverter",,,0.4781099855899811,false,,false,false,false,,,false,false,,2008-04-10T18:00:00.000Z,0 CVE-2008-1101,https://securityvulnerability.io/vulnerability/CVE-2008-1101,,"Buffer overflow in kvdocve.dll in the KeyView document viewing engine in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allows remote attackers to execute arbitrary code via a long pathname, as demonstrated by a long SRC attribute of an IMG element in an HTML document.",IBM,"Lotus Notes,Keyview",,,0.31279000639915466,false,,false,false,false,,,false,false,,2008-04-10T18:00:00.000Z,0 CVE-2005-2619,https://securityvulnerability.io/vulnerability/CVE-2005-2619,,"Directory traversal vulnerability in kvarcve.dll in Autonomy (formerly Verity) KeyView SDK before 9.2.0, as used in Lotus Notes 6.5.4 and 7.0, allows remote attackers to delete arbitrary files via a (1) ZIP, (2) UUE or (3) TAR archive that contains a .. (dot dot) in the filename, which is not properly handled when generating a preview.",IBM,"Lotus Notes,Keyview Viewer Sdk,Keyview Export Sdk,Keyview Filter Sdk",,,0.06983000040054321,false,,false,false,false,,,false,false,,2005-12-31T05:00:00.000Z,0 CVE-2005-2618,https://securityvulnerability.io/vulnerability/CVE-2005-2618,,"Multiple stack-based buffer overflows in Autonomy (formerly Verity) KeyView SDK before 9.2.0, as used in Lotus Notes 6.5.4 and 7.0, allow remote attackers to execute arbitrary code via (1) a UUE file containing an encoded file with a long filename handled by uudrdr.dll, (2) a compressed ZIP file with a long filename handled by kvarcve.dll, (3) a TAR archive with a long filename that is extracted to a directory with a long path handled by the TAR reader (tarrdr.dll), (4) an email that contains a long HTTP, FTP, or // link handled by the HTML speed reader (htmsr.dll) or (5) an email containing a crafted long link handled by the HTML speed reader (htmsr.dll).",IBM,"Lotus Notes,Keyview Viewer Sdk,Keyview Export Sdk,Keyview Filter Sdk",,,0.9089999794960022,false,,false,false,false,,,false,false,,2005-12-31T05:00:00.000Z,0 CVE-2002-0370,https://securityvulnerability.io/vulnerability/CVE-2002-0370,,"Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.",IBM,"Lotus Notes,Winzip,Stuffit Expander,Keyview Viewing Sdk",,,0.09239999949932098,false,,false,false,false,,,false,false,,2002-10-10T04:00:00.000Z,0