VYPR
Medium severity5.3NVD Advisory· Published Dec 1, 2020· Updated Jun 17, 2026

CVE-2020-4129

CVE-2020-4129

Description

HCL Domino is susceptible to a lockout policy bypass vulnerability in the LDAP service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the LDAP service. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.

Affected products

12
  • Range: 9.0.1 FP10 IF6, 10.0.1 FP6, 11.0.1 FP1 and later
  • HCL/Dominodescription
  • HCLTech/Hcl Domino10 versions
    cpe:2.3:a:hcltech:hcl_domino:*:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:hcltech:hcl_domino:*:*:*:*:*:*:*:*range: <9.0.1
    • cpe:2.3:a:hcltech:hcl_domino:9.0.1:feature_pack_10_interim_fix_2:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:9.0.1:feature_pack_10_interim_fix_3:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:9.0.1:feature_pack_10_interim_fix_4:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:9.0.1:feature_pack_10_interim_fix_5:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:10.0.1:fixpack1:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:10.0.1:fixpack2:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:10.0.1:fixpack3:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:10.0.1:fixpack4:*:*:*:*:*:*
    • cpe:2.3:a:hcltech:hcl_domino:10.0.1:fixpack5:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.