CVE-2003-0179
Summary
| CVE | CVE-2003-0179 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2003-04-02 05:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Buffer overflow in the COM Object Control Handler for Lotus Domino 6.0.1 and earlier allows remote attackers to execute arbitrary code via multiple attack vectors, as demonstrated using the InitializeUsingNotesUserName method in the iNotes ActiveX control. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Lotus Domino Web Server | 6.0 | All | All | All |
| Application | Ibm | Lotus Notes Client | 6.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| IBM Lotus Notes and Domino COM Object Control Handler Buffer Overflow Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch, Vendor Advisory |
| Neohapsis Archives - VulnWatch - [VulnWatch] Lotus iNotes Client ActiveX Control Buffer Overrun (#NISR17022003c) - From nisr_at_nextgenss.com | af854a3a-2127-422b-91ae-364da2661108 | archives.neohapsis.com | |
| CERT Advisory CA-2003-11 Multiple Vulnerabilities in Lotus Notes and Domino | af854a3a-2127-422b-91ae-364da2661108 | www.cert.org | US Government Resource |
| 'Domino Advisories UPDATE' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| 'Lotus iNotes Client ActiveX Control Buffer Overrun (#NISR17022003c)' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| N-065: Multiple Vulnerabilities in Lotus Notes and Domino | af854a3a-2127-422b-91ae-364da2661108 | www.ciac.org | |
| 'Domino Advisories UPDATE' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| nextgenss.com - This website is for sale! - nextgenss Resources and Information. | af854a3a-2127-422b-91ae-364da2661108 | www.nextgenss.com | |
| CERT/CC Vulnerability Note VU#571297 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | Patch, Third Party Advisory, US Government Resource |
| IBM notice: The page you requested cannot be displayed | af854a3a-2127-422b-91ae-364da2661108 | www-1.ibm.com | |
| 'Lotus iNotes Client ActiveX Control Buffer Overrun (#NISR17022003c)' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.