Vulnerability Details CVE-2018-1437
IBM Notes 8.5 and 9.0 could allow an attacker to execute arbitrary code on the system, caused by an error related to multiple untrusted search path. A local attacker could exploit this vulnerability to DLL hijacking to execute arbitrary code on the system or cause the application to crash. IBM X-Force ID: 139565.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.2%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2018-1437
-
-
cpe:2.3:a:ibm:notes:8.5.0.2
-
cpe:2.3:a:ibm:notes:8.5.1
-
cpe:2.3:a:ibm:notes:8.5.1.5
-
cpe:2.3:a:ibm:notes:8.5.2
-
cpe:2.3:a:ibm:notes:8.5.2.4
-
cpe:2.3:a:ibm:notes:8.5.3
-
cpe:2.3:a:ibm:notes:8.5.3.6
-
-
cpe:2.3:a:ibm:notes:9.0.1
-
cpe:2.3:a:ibm:notes:9.0.1.9