oval:org.mitre.oval:def:14348

Definition Id: oval:org.mitre.oval:def:14348
 
Oval ID: oval:org.mitre.oval:def:14348
Title: Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a DLL file, aka SPR PRAD82YJW2.
Description: Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a DLL file, aka SPR PRAD82YJW2.
Family: windows Class: vulnerability
Reference(s): CVE-2011-0912
Version: 5
Platform(s): Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows XP
Microsoft Windows 2000
Product(s): Lotus Notes
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:11999
 
Oval ID: oval:org.mitre.oval:def:11999
Title: IBM Lotus Notes is installed
Description: IBM Lotus Notes is installed
Family: windows Class: inventory
Reference(s): cpe:/a:ibm:lotus_notes
Version: 3
Platform(s): Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s): IBM Lotus Notes
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:14348