← Vulnerability feed

Vulnerability record · CVE-2016-6087 · published 7 June 2017

CVE-2016-6087: Ibm domino improper input validation vulnerability

Ibm · Domino

IBM Domino 8.5 and 9.0 could allow an attacker to steal credentials using multiple sessions and large amounts of data using Domino TLS Key Exchange validation. IBM X-Force ID: 117918.

9.8 CVSS 3.1 Critical EPSS 1.9% · top 20.7% CWE-20 · Improper input validation
9.8CVSS 3.1 base score, v2 5.0
1.9%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References
17 Jun 2026Last modified by NVD

Description

IBM Domino 8.5 and 9.0 could allow an attacker to steal credentials using multiple sessions and large amounts of data using Domino TLS Key Exchange validation. IBM X-Force ID: 117918.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2016-6087 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-1903Ibm domino memory buffer overflow vulnerabilityStack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…EPSS 7.8%10.0CVE-2015-1902Ibm domino memory buffer overflow vulnerabilityStack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…EPSS 7.8%10.0CVE-2015-0135Ibm domino vulnerabilityIBM Domino 8.5 before 8.5.3 FP6 IF4 and 9.0 before 9.0.1 FP3 IF2 allows remote attackers to execute arbitrary code or cause a denial of service (inte…EPSS 40%10.0CVE-2015-0134Ibm domino memory buffer overflow vulnerabilityBuffer overflow in the SSLv2 implementation in IBM Domino 8.5.x before 8.5.1 FP5 IF3, 8.5.2 before FP4 IF3, 8.5.3 before FP6 IF6, 9.0 before IF7, and…EPSS 4.7%10.0CVE-2015-0117Ibm domino vulnerabilityThe LDAP Server in IBM Domino 8.5.x before 8.5.3 FP6 IF6 and 9.x before 9.0.1 FP3 IF1 allows remote attackers to execute arbitrary code or cause a de…EPSS 3.8%8.8CVE-2017-1274Ibm domino memory buffer overflow vulnerabilityIBM Domino 8.5.3, and 9.0 is vulnerable to a stack based overflow in the IMAP service that could allow an authenticated attacker to execute arbitrary…EPSS 6.8%8.1CVE-2016-0304Ibm domino improper access control vulnerabilityThe Java Console in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6, when a certain unsupported configuration involving UNC share pat…EPSS 2.5%7.8CVE-2012-6277Ibm domino vulnerabilityMultiple unspecified vulnerabilities in Autonomy KeyView IDOL before 10.16, as used in Symantec Mail Security for Microsoft Exchange before 6.5.8, Sy…EPSS 8.1%

Source: NIST National Vulnerability Database (record CVE-2016-6087), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.