CVE-2012-2175
Buffer overflow in the Attachment_Times method in a certain ActiveX control in dwa85W.dll in IBM Lotus iNotes 8.5.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a long argument.
- Affected products
- Ibm Lotus Notes
- Ibm Lotus Inotes
- = 8.5.0.0, 8.5.0.1, 8.5.1.0, 8.5.1.1, 8.5.1.2, 8.5.1.3, 8.5.1.4, 8.5.1.5, 8.5.2.0, 8.5.2.1, 8.5.2.2, 8.5.2.3, 8.5.3.0, 8.5.3.1
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 29.4% (98th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2012-06-20
CVE-2012-2175 at NVD
9 known exploits for CVE-2012-2175
Proof-of-concept code and exploit modules indexed by Sploitus
IBM Lotus iNotes dwa85W ActiveX Buffer Overflow Vulnerability
IBM Lotus iNotes dwa85W - ActiveX Buffer Overflow (Metasploit)
IBM Lotus iNotes dwa85W ActiveX Buffer Overflow
Lotus Notes iNotes Attachment_Times ActiveX Overflow
Lotus Notes iNotes Attachment_Times ActiveX Overflow
Lotus Notes iNotes Attachment_Times ActiveX Overflow
Lotus Notes iNotes Attachment_Times ActiveX Overflow
IBM Lotus iNotes Upload模块ActiveX控件缓冲区溢出漏洞
IBM Lotus iNotes dwa85W ActiveX Buffer Overflow