VYPR
High severity7.8NVD Advisory· Published Oct 29, 2007· Updated Apr 23, 2026

CVE-2007-5544

CVE-2007-5544

Description

IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak permissions (Everyone:Full Control) for memory mapped files (shared memory) in IPC, which allows local users to obtain sensitive information, or inject Lotus Script or other character sequences into a session.

Affected products

4
  • IBM/Lotus Domino3 versions
    cpe:2.3:a:ibm:lotus_domino:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:lotus_domino:*:*:*:*:*:*:*:*range: <6.5.5
    • cpe:2.3:a:ibm:lotus_domino:6.5.5:-:*:*:*:*:*:*
    • cpe:2.3:a:ibm:lotus_domino:7.0.2:-:*:*:*:*:*:*
  • cpe:2.3:a:ibm:lotus_notes:*:*:*:*:*:*:*:*
    Range: <=6.5.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.