← back
CVE-2011-1213

CVE-2011-1213

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 33%
from disclosure to weapon23 days
Published on NVDMay 31
1st PoC+23d
metasploitMay 24
exploitation probability
33%top 2% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Integer underflow in lzhsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted header in a .lzh attachment that triggers a stack-based buffer overflow, aka SPR PRAD88MJ2W.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.