IBM Lotus iNotes "Attachment_Times" ActiveX Buffer Overflow Vulnerability
09 January 2013
Buffer overflow in the Attachment_Times method in a certain ActiveX control in dwa85W.dll in IBM Lotus iNotes 8.5.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a long argument.
CVSS v2 Base Score: 9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Bitglass talks about how cloud and mobile and the the largest trends happening in enterprise IT today. There's not a single enterprise out there that's not dealing with these challenges at some level, with the most significant being security and compliance.
A coder that goes by the online handle "Hephaestos" has shared with the world a Python script that, when put on an USB thumb drive, turns the device in an effective kill switch for the computer in which it's plugged in.