← Back

CVE-2022-38654

nvd nist
Published: Nov 4, 2022Modified: Jun 17, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

HCL Domino is susceptible to an information disclosure vulnerability. In some scenarios, local calls made on the server to search the Domino directory will ignore xACL read restrictions. An authenticated attacker could leverage this vulnerability to access attributes from a user's person record.

Affected (31)

Products: Hcltech: Domino
1 product
Domino
Configuration A
31 vulnerable
Vulnerable SoftwareAffected Versions
Hcltech
Version 10.0.0
Version 10.0.1
Version 10.0.1 fixpack_1
Version 10.0.1 fixpack_2
Version 10.0.1 fixpack_3
Version 10.0.1 fixpack_4
Version 10.0.1 fixpack_5
Version 10.0.1 fixpack_6
Version 10.0.1 fixpack_7
Version 11.0.1
Version 11.0.1 fixpack_1
Version 11.0.1 fixpack_2
Version 11.0.1 fixpack_3
Version 11.0.1 fixpack_4
Version 11.0.1 fixpack_5
Version 12.0
Version 9.0.1
Version 9.0.1 feature_pack_10_interim_fix_3
Version 9.0.1 feature_pack_10_interim_fix_4
Version 9.0.1 feature_pack_10_interim_fix_5
Version 9.0.1 feature_pack_8
Version 9.0.1 feature_pack_8_interim_fix_1
Version 9.0.1 feature_pack_8_interim_fix_2
Version 9.0.1 feature_pack_8_interim_fix_3
Version 9.0.1 fixpack_3
Version 9.0.1 fixpack_4
Version 9.0.1 fixpack_5
Version 9.0.1 fixpack_6
Version 9.0.1 fixpack_7
Version 9.0.1 fixpack_8
Version 9.0.1 fixpack_9

References (2)

Timeline

No history available yet.