← Back

CVE-2020-4127

nvd nist
Published: Nov 30, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

HCL Domino is susceptible to a Login CSRF vulnerability. With a valid credential, an attacker could trick a user into accessing a system under another ID or use an intranet user's system to access internal systems from the internet. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.

Affected (14)

Products: Hcltech: Hcl Domino
1 product
Hcl Domino
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Hcltech
Before 9.0.1
From 10.0.0 to 10.0.1
From 11.0.0 to 11.0.1
Version 10.0.1
Version 10.0.1 fixpack1
Version 10.0.1 fixpack2
Version 10.0.1 fixpack3
Version 10.0.1 fixpack4
Version 10.0.1 fixpack5
Version 9.0.1
Version 9.0.1 feature_pack_10_interim_fix_2
Version 9.0.1 feature_pack_10_interim_fix_3
Version 9.0.1 feature_pack_10_interim_fix_4
Version 9.0.1 feature_pack_10_interim_fix_5

References (2)

Timeline

No history available yet.