CVE-2008-0066

N/A Unknown
Published: April 10, 2008 Modified: April 23, 2026
View on NVD

Description

Multiple buffer overflows in htmsr.dll in the HTML speed reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allow remote attackers to execute arbitrary code via an HTML document with (1) "large chunks of data," or a long URL in the (2) BACKGROUND attribute of a BODY element or (3) SRC attribute of an IMG element.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/28140
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
http://secunia.com/advisories/28209
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
http://secunia.com/advisories/28210
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
http://secunia.com/secunia_research/2008-3/advisory/
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
http://www.securityfocus.com/bid/28454
Source: PSIRT-CNA@flexerasoftware.com
http://www.securitytracker.com/id?1019843
Source: PSIRT-CNA@flexerasoftware.com
http://www.vupen.com/english/advisories/2008/1153
Source: PSIRT-CNA@flexerasoftware.com
http://www.vupen.com/english/advisories/2008/1156
Source: PSIRT-CNA@flexerasoftware.com
http://secunia.com/advisories/28140
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/28209
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/28210
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/secunia_research/2008-3/advisory/
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www-1.ibm.com/support/docview.wss?rs=463&uid=swg21298453
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/490828/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/28454
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1019843
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2008/1153
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2008/1156
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/41724
Source: af854a3a-2127-422b-91ae-364da2661108

22 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
27.1%
96th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

autonomy ibm