CVE-2007-6706

Unspecified vulnerability in nlnotes.dll in the client in IBM Lotus Notes 6.5, 7.0.x before 7.0.2 CCH or 7.0.3, and possibly 8.0 allows remote attackers to execute arbitrary code via crafted text in an e-mail message sent over SMTP.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:lotus_notes:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:6.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:8.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:40

Type Values Removed Values Added
References () http://osvdb.org/40956 - () http://osvdb.org/40956 -
References () http://secunia.com/advisories/27279 - Vendor Advisory () http://secunia.com/advisories/27279 - Vendor Advisory
References () http://securitytracker.com/id?1019464 - () http://securitytracker.com/id?1019464 -
References () http://www-1.ibm.com/support/docview.wss?uid=swg21271957 - () http://www-1.ibm.com/support/docview.wss?uid=swg21271957 -
References () http://www.vupen.com/english/advisories/2007/3597 - () http://www.vupen.com/english/advisories/2007/3597 -

Information

Published : 2008-03-09 02:44

Updated : 2024-11-21 00:40


NVD link : CVE-2007-6706

Mitre link : CVE-2007-6706

CVE.ORG link : CVE-2007-6706


JSON object : View

Products Affected

ibm

  • lotus_notes
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')