IBM.Lotus.Domino.Web.Access.ActiveX.Controls.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnerability in IBM Domino Web Access.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted packet passed to the iNotes Web Access ActiveX controls. It allows a remote attacker to execute arbitrary code.

affected-products-logoAffected Products

IBM Domino Web Access 8.0.2 FP4
IBM Domino Web Access 8.0.1
IBM Domino Web Access 7.0.3
IBM Domino Web Access 7.0.1
IBM Domino Web Access 6.5.6
IBM Domino Web Access 6.5.5
IBM Domino Web Access 6.5.5
IBM Domino Web Access 6.5.4
IBM Domino Web Access 6.5.3
IBM Domino Web Access 6.5.2
IBM Domino Web Access 6.5.1
IBM Domino Web Access 6.0.5
IBM Domino Web Access 6.0.4
IBM Domino Web Access 6.0.3
IBM Domino Web Access 6.0.2 .2
IBM Domino Web Access 6.0.2 .1
IBM Domino Web Access 6.0.1 .3
IBM Domino Web Access 6.0.1 .2
IBM Domino Web Access 6.0.1 .1
IBM Domino Web Access 6.0.1
IBM Domino Web Access 8.0
IBM Domino Web Access 7.0
IBM Domino Web Access 6.5
IBM Domino Web Access 6.0

Impact logoImpact

System compromise

recomended-action-logoRecommended Actions

Upgrade to the latest version of IBM Domino Web Access (7.0.4 or 8.5 or later):

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)