cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2008-7253,https://securityvulnerability.io/vulnerability/CVE-2008-7253,,"The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authentication credentials via a cross-site tracing (XST) attack, a related issue to CVE-2004-2763 and CVE-2005-3398.",IBM,Lotus Domino Server,,,0.0033100000582635403,false,,false,false,false,,,false,false,,2010-01-25T19:30:00.000Z,0 CVE-2008-2410,https://securityvulnerability.io/vulnerability/CVE-2008-2410,,"Cross-site scripting (XSS) vulnerability in the servlet engine and Web container in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.",IBM,Lotus Domino Web Server,,,0.0021699999924749136,false,,false,false,false,,,false,false,,2008-05-22T10:00:00.000Z,0 CVE-2007-0067,https://securityvulnerability.io/vulnerability/CVE-2007-0067,,"Unspecified vulnerability in the Lotus Domino Web Server 6.0, 6.5.x before 6.5.6, and 7.0.x before 7.0.3 allows remote attackers to cause a denial of service (daemon crash) via requests for URLs that reference certain files.",IBM,Lotus Domino Web Server,,,0.016690000891685486,false,,false,false,false,,,false,false,,2007-06-06T10:00:00.000Z,0 CVE-2006-0580,https://securityvulnerability.io/vulnerability/CVE-2006-0580,,IBM Lotus Domino Server 7.0 allows remote attackers to cause a denial of service (segmentation fault) via a crafted packet to the LDAP port (389/TCP).,IBM,Lotus Domino Server,,,0.6715099811553955,false,,false,false,false,,,false,false,,2006-02-08T01:00:00.000Z,0 CVE-2006-0120,https://securityvulnerability.io/vulnerability/CVE-2006-0120,,"Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (application crash) via multiple vectors, involving (1) a malformed message sent to an ""Out Of Office"" agent (SPR LPEE6DMQWJ), (2) the compact command (RTIN5U2SAJ), (3) malformed bitmap images (MYAA6FH5HW), (4) the ""Delete Attachment"" action (YPHG6844LD), (5) parsing certificates from a remote Certificate Table (AELE6DZFJW), and (6) creating a SSL key ring with the Domino Administration client (NSUA4FQPTN).",IBM,"Lotus Domino,Lotus Notes,Lotus Domino Enterprise Server",,,0.02809000015258789,false,,false,false,false,,,false,false,,2006-01-09T11:00:00.000Z,0 CVE-2006-0121,https://securityvulnerability.io/vulnerability/CVE-2006-0121,,"Multiple memory leaks in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (memory consumption and crash) via unknown vectors related to (1) unspecified vectors during the SSL handshake (SPR# MKIN67MQVW), (2) the stash file during the SSL handshake (SPR# MKIN693QUT), and possibly other vectors. NOTE: due to insufficient information in the original vendor advisory, it is not clear whether there is an attacker role in other memory leaks that are specified in the advisory.",IBM,"Lotus Domino,Lotus Notes,Lotus Domino Enterprise Server",,,0.004000000189989805,false,,false,false,false,,,false,false,,2006-01-09T11:00:00.000Z,0 CVE-2006-0117,https://securityvulnerability.io/vulnerability/CVE-2006-0117,,"Buffer overflow in IBM Lotus Notes and Domino Server before 6.5.5 allows attackers to cause a denial of service (router crash or hang) via unspecified vectors involving ""CD to MIME Conversion"".",IBM,"Lotus Domino,Lotus Notes,Lotus Domino Enterprise Server",,,0.005710000172257423,false,,false,false,false,,,false,false,,2006-01-09T11:00:00.000Z,0 CVE-2006-0118,https://securityvulnerability.io/vulnerability/CVE-2006-0118,,"Unspecified vulnerability in IBM Lotus Notes and Domino Server before 6.5.5, when running on AIX, allows attackers to cause a denial of service (deep recursion leading to stack overflow and crash) via long formulas.",IBM,"Lotus Domino,Lotus Notes,Lotus Domino Enterprise Server",,,0.005710000172257423,false,,false,false,false,,,false,false,,2006-01-09T11:00:00.000Z,0 CVE-2006-0119,https://securityvulnerability.io/vulnerability/CVE-2006-0119,,"Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 have unknown impact and attack vectors, due to ""potential security issues"" as identified by SPR numbers (1) GPKS6C9J67 in Agents, (2) JGAN6B6TZ3 and (3) KSPR699NBP in the Router, (4) GPKS5YQGPT in Security, or (5) HSAO6BNL6Y in the Web Server. NOTE: vector 3 is related to an issue in NROUTER in IBM Lotus Notes and Domino Server before 6.5.4 FP1, 6.5.5, and 7.0, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted vCal meeting request sent via SMTP (aka SPR# KSPR699NBP).",IBM,"Lotus Domino,Lotus Notes,Lotus Domino Enterprise Server",,,0.02790999971330166,false,,false,false,false,,,false,false,,2006-01-09T11:00:00.000Z,0 CVE-2005-3015,https://securityvulnerability.io/vulnerability/CVE-2005-3015,,Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 6.5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) BaseTarget or (2) Src parameters.,IBM,"Lotus Domino,Lotus Domino Enterprise Server",,,0.008539999835193157,false,,false,false,false,,,false,false,,2005-09-21T21:03:00.000Z,0 CVE-2005-0986,https://securityvulnerability.io/vulnerability/CVE-2005-0986,,"NLSCCSTR.DLL in the web service in IBM Lotus Domino Server 6.5.1, 6.0.3, and possibly other versions allows remote attackers to cause a denial of service (deep recursion and nHTTP.exe process crash) via a long GET request containing UNICODE decimal value 430 characters, which causes the stack to be exhausted. NOTE: IBM has reported that it is unable to replicate this issue.",IBM,Lotus Domino Server,,,0.9176700115203857,false,,false,false,false,,,false,false,,2005-05-02T04:00:00.000Z,0 CVE-2005-1101,https://securityvulnerability.io/vulnerability/CVE-2005-1101,,Multiple buffer overflows in Lotus Domino Server 6.0.5 and 6.5.4 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via large amounts of data in certain (1) time or (2) date fields.,IBM,Lotus Domino Server,,,0.019020000472664833,false,,false,false,false,,,false,false,,2005-05-02T04:00:00.000Z,0 CVE-2003-0179,https://securityvulnerability.io/vulnerability/CVE-2003-0179,,"Buffer overflow in the COM Object Control Handler for Lotus Domino 6.0.1 and earlier allows remote attackers to execute arbitrary code via multiple attack vectors, as demonstrated using the InitializeUsingNotesUserName method in the iNotes ActiveX control.",IBM,"Lotus Domino Web Server,Lotus Notes Client",,,0.03246000036597252,false,,false,false,false,,,false,false,,2003-04-02T05:00:00.000Z,0 CVE-2003-0178,https://securityvulnerability.io/vulnerability/CVE-2003-0178,,"Multiple buffer overflows in Lotus Domino Web Server before 6.0.1 allow remote attackers to cause a denial of service or execute arbitrary code via (1) the s_ViewName option in the PresetFields parameter for iNotes, (2) the Foldername option in the PresetFields parameter for iNotes, or (3) a long Host header, which is inserted into a long Location header and used during a redirect operation.",IBM,Lotus Domino Web Server,,,0.8073300123214722,false,,false,false,false,,,false,false,,2003-04-02T05:00:00.000Z,0 CVE-2003-0180,https://securityvulnerability.io/vulnerability/CVE-2003-0180,,"Lotus Domino Web Server (nhttp.exe) before 6.0.1 allows remote attackers to cause a denial of service via an incomplete POST request, as demonstrated using the h_PageUI form.",IBM,Lotus Domino Web Server,,,0.004220000002533197,false,,false,false,false,,,false,false,,2003-04-02T05:00:00.000Z,0 CVE-2003-0181,https://securityvulnerability.io/vulnerability/CVE-2003-0181,,"Lotus Domino Web Server (nhttp.exe) before 6.0.1 allows remote attackers to cause a denial of service via a ""Fictionary Value Field POST request"" as demonstrated using the s_Validation form with a long, unknown parameter name.",IBM,Lotus Domino Web Server,,,0.0034799999557435513,false,,false,false,false,,,false,false,,2003-04-02T05:00:00.000Z,0 CVE-2002-2025,https://securityvulnerability.io/vulnerability/CVE-2002-2025,,Lotus Domino server 5.0.9a and earlier allows remote attackers to cause a denial of service by exhausting the number of working threads via a large number of HTTP requests for (1) an MS-DOS device name and (2) an MS-DOS device name with a large number of characters appended to the device name.,IBM,Lotus Domino Server,,,0.01882999949157238,false,,false,false,false,,,false,false,,2002-12-31T05:00:00.000Z,0 CVE-2002-0037,https://securityvulnerability.io/vulnerability/CVE-2002-0037,,"Lotus Domino Servers 5.x, 4.6x, and 4.5x allows attackers to bypass the intended Reader and Author access list for a document's object via a Notes API call (NSFDbReadObject) that directly accesses the object.",IBM,Lotus Domino Server,,,0.022019999101758003,false,,false,false,false,,,false,false,,2002-04-22T04:00:00.000Z,0 CVE-2001-1567,https://securityvulnerability.io/vulnerability/CVE-2001-1567,,"Lotus Domino server 5.0.9a and earlier allows remote attackers to bypass security restrictions and view Notes database files and possibly sensitive Notes template files (.ntf) via an HTTP request with a large number of ""+"" characters before the .nsf file extension, which are converted to spaces by Domino.",IBM,"Lotus Domino,Lotus Domino Server",,,0.0018700000364333391,false,,false,false,false,,,false,false,,2001-12-31T05:00:00.000Z,0 CVE-1999-0729,https://securityvulnerability.io/vulnerability/CVE-1999-0729,,Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request.,IBM,Lotus Domino Server,,,0.005880000069737434,false,,false,false,false,,,false,false,,2001-03-12T05:00:00.000Z,0 CVE-1999-0284,https://securityvulnerability.io/vulnerability/CVE-1999-0284,,"Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.",IBM,"Lotus Domino Mail Server,Exchange Server",,,0.004559999797493219,false,,false,false,false,,,false,false,,1998-01-01T05:00:00.000Z,0