Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2012-6277

7.8 · HIGH
Published Feb 21, 2020 ibm EPSS 8.12% (95th pctl)

Overview

CVE-2012-6277 is a high-severity vulnerability affecting ibm domino. It was published on February 21, 2020 and has a CVSS 3.1 base score of 7.8 (HIGH).

This vulnerability has a CVSS 3.1 base score of 7.8, rated HIGH. It requires local or adjacent network access to exploit. No authentication or special privileges are required for exploitation.

Technical Description

Multiple unspecified vulnerabilities in Autonomy KeyView IDOL before 10.16, as used in Symantec Mail Security for Microsoft Exchange before 6.5.8, Symantec Mail Security for Domino before 8.1.1, Symantec Messaging Gateway before 10.0.1, Symantec Data Loss Prevention (DLP) before 11.6.1, IBM Notes 8.5.x, IBM Lotus Domino 8.5.x before 8.5.3 FP4, and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, related to "a number of underlying issues" in which "some of these cases demonstrated memory corruption with attacker-controlled input and could be exploited to run arbitrary code."

Remediation

Check the references section for vendor advisories and patches from ibm. Update domino to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Affected Products

Vendor Product Versions Status
ibm domino 8.5.0 Affected
ibm notes 8.5 Affected
symantec data_loss_prevention_endpoint >= 11.0, < 11.6.1 Affected
symantec data_loss_prevention_enforce\/detection_servers >= 11.0, < 11.6.1 Affected
symantec mail_security 0 Affected
symantec messaging_gateway >= 9.5, < 10.0.1 Affected
hp autonomy_keyview_idol >= 0, < 10.16 Affected

Frequently Asked Questions

What is CVE-2012-6277?

CVE-2012-6277 is a high-severity vulnerability affecting ibm domino. It was published on February 21, 2020 and has a CVSS 3.1 base score of 7.8 (HIGH).

How severe is CVE-2012-6277?

This vulnerability has a CVSS 3.1 base score of 7.8, rated HIGH. It requires local or adjacent network access to exploit. No authentication or special privileges are required for exploitation.

How do I fix or remediate CVE-2012-6277?

Check the references section for vendor advisories and patches from ibm. Update domino to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2012-6277?

CyberStrike's AI-powered security agents can automatically detect CVE-2012-6277 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.