Lotus Notes Email Embedded Code Execution Vulnerability
BID:3458
Info
Lotus Notes Email Embedded Code Execution Vulnerability
| Bugtraq ID: | 3458 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 22 2001 12:00AM |
| Updated: | Oct 22 2001 12:00AM |
| Credit: | Discovered and posted to Bugtraq by Security Bugware Team on October 22, 2001. |
| Vulnerable: |
Lotus Notes R5 Client 4.6 |
| Not Vulnerable: | |
Discussion
Lotus Notes Email Embedded Code Execution Vulnerability
It is possible for a remote attacker to cause malicious code to be executed by embedding in a Lotus Notes object, which is included in an email message targeted to a Lotus Notes user. Opening the email message or viewing the message from a preview pane will execute the code.
It is possible for a remote attacker to cause malicious code to be executed by embedding in a Lotus Notes object, which is included in an email message targeted to a Lotus Notes user. Opening the email message or viewing the message from a preview pane will execute the code.
Solution / Fix
Lotus Notes Email Embedded Code Execution Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.