CVE-2020-4089 Vulnerability Details

  /     /     /  

CVE-2020-4089 Metadata Quick Info

CVE Published: 26/06/2020 | CVE Updated: 04/08/2024 | CVE Year: 2020
Source: HCL | Vendor: HCL | Product: HCL Notes
Status : PUBLISHED

CVE-2020-4089 Description

HCL Notes is vulnerable to an information leakage vulnerability through its support for the \'mailto\' protocol. This vulnerability could result in files from the user\'s filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: "Information Leakage"
Source: HCL

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).