Vulnerabilities (CVE)

Filtered by vendor Hcltech Subscribe
Filtered by product Notes
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-14232 1 Hcltech 1 Notes 2020-12-21 9.0 HIGH 8.8 HIGH
A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow. This could allow the attacker to crash the program or inject code into the system which would execute with the privileges of the currently logged in user.
CVE-2020-14258 1 Hcltech 1 Notes 2020-12-01 5.0 MEDIUM 7.5 HIGH
HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input. A remote unauthenticated attacker could exploit this vulnerability using a specially-crafted email message to hang the client. Versions 9, 10 and 11 are affected.