First published: Wed Jan 29 2014(Updated: )
Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr for Domino 8.5.1 before 8.5.1.42-001b allows remote attackers to execute arbitrary code via a crafted HTML document, a different vulnerability than CVE-2013-6748.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Quickr Server | =8.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6749 has a high severity rating due to the potential for remote code execution.
To fix CVE-2013-6749, update IBM Lotus Quickr for Domino to version 8.5.1.42-001b or later.
CVE-2013-6749 allows remote attackers to execute arbitrary code, which can compromise system integrity.
Yes, CVE-2013-6749 specifically affects IBM Lotus Quickr for Domino versions prior to 8.5.1.42-001b.
Yes, there are known exploitation scenarios for CVE-2013-6749 that utilize crafted HTML documents.