← All CVEs

CVE-2008-2240

high · 10

Stack-based buffer overflow in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long Accept-Language HTTP header.

10
CVSS
64.8%
EPSS (exploit prob.)
99th
EPSS percentile
2008-05-22
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
ibmlotus_domino6.0
ibmlotus_domino6.5
ibmlotus_domino7.0
ibmlotus_domino8.0
ibmlotus_domino8.0.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-2240