Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2017-1130

49
FAUCET Score

CVE-2017-1130 describes a denial-of-service vulnerability affecting IBM Notes versions 8.5 and 9.0. An attacker can exploit this by tricking a user into clicking a malicious link, which then repeatedly opens file selection dialog boxes, causing the client to hang and require a restart. This vulnerability has a CVSS score of 6.5 (Medium), indicating a network-based attack with low complexity, requiring user interaction, and resulting in high availability impact. Its EPSS score suggests a higher-than-average likelihood of exploitation compared to other CVEs. While not listed on the KEV catalog or Hot List, exploit code is publicly available, including a Metasploit module and an ExploitDB entry. Despite this, there is no recorded community discussion or media coverage, suggesting it has not garnered significant public attention.

Impacted Technologies

VendorProductVersion(s)CPE
8.5.0.0CPE matchmatch criteria
cpe:2.3:a:ibm:inotes:8.5.0.0:*:*:*:*:*:*:*
8.5.1.0CPE matchmatch criteria
cpe:2.3:a:ibm:inotes:8.5.1.0:*:*:*:*:*:*:*
8.5.1.1CPE matchmatch criteria
cpe:2.3:a:ibm:inotes:8.5.1.1:*:*:*:*:*:*:*
8.5.1.5CPE matchmatch criteria
cpe:2.3:a:ibm:inotes:8.5.1.5:*:*:*:*:*:*:*
8.5.2.0CPE matchmatch criteria
cpe:2.3:a:ibm:inotes:8.5.2.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

6.5MEDIUM

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
3.6
CvssVersion
3.0

Exploit Intelligence

EPSS Score
29.22%
Probability of exploitation in next 30 days
EPSS Percentile
98.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
Metasploit: IBM Notes Denial Of Service · Aug 31, 2017
ExploitDB: EDB-42604 · Aug 31, 2017
This CVE's current EPSS score of 0.2922 is in the 99th percentile among its peer group of 26,209 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

exchange.xforce.ibmcloud.com / vulnerabilities/121371
VDB EntryVendor Advisory
exploit-db.com / exploits/42604
ExploitThird Party AdvisoryVDB Entry
ibm.com / support/docview.wss
PatchVendor Advisory
securityfocus.com / bid/100632
Third Party AdvisoryVDB Entry