Description
HCL Domino is susceptible to a Login CSRF vulnerability. With a valid credential, an attacker could trick a user into accessing a system under another ID or use an intranet user's system to access internal systems from the internet. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-25374 | HCL Domino is susceptible to a Login CSRF vulnerability. With a valid credential, an attacker could trick a user into accessing a system under another ID or use an intranet user's system to access internal systems from the internet. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later. |
References
History
No history.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-08-04T07:52:20.933Z
Reserved: 2019-12-30T00:00:00.000Z
Link: CVE-2020-4127
No data.
Status : Modified
Published: 2020-11-30T22:15:11.167
Modified: 2024-11-21T05:32:17.997
Link: CVE-2020-4127
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD