High severity7.8NVD Advisory· Published Mar 14, 2018· Updated Jun 17, 2026
CVE-2018-1435
CVE-2018-1435
Description
IBM Notes 8.5 and 9.0 is vulnerable to a DLL hijacking attack. A remote attacker could trick a user to double click a malicious executable in an attacker-controlled directory, which could result in code execution. IBM X-Force ID: 139563.
Affected products
138.5.3.6+ 12 more
- (no CPE)range: 8.5.3.6
- (no CPE)range: 8.5, 9.0
- cpe:2.3:a:ibm:notes:8.5:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.3:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:8.5.3.6:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:9.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:notes:9.0.1.9:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- www.ibm.com/support/docview.wssnvdPatchVendor Advisory
- www.securityfocus.com/bid/103404nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040563nvdThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/139563nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.