VYPR
Critical severity9.8NVD Advisory· Published Dec 18, 2020· Updated Jun 17, 2026

CVE-2020-14224

CVE-2020-14224

Description

A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow. This could allow a remote attacker to crash the Notes application or inject code into the system which would execute with the privileges of the currently logged-in user.

Affected products

4
  • HCLTech/Notes2 versions
    cpe:2.3:a:hcltech:notes:9.0.1:-:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:hcltech:notes:9.0.1:-:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:notes:9.0:*:*:*:*:*:*:*
  • HCL/Notesdescription
  • Range: v9

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.