CVE-2000-1047: Lotus Domino Enterprise Server

High severity, CVSS 10.0. EPSS: 4.4% chance of exploitation in the next 30 days.

Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command.

Affected products

  • Lotus Domino Enterprise Server: version 5.0.1 only; version 5.0.2 only; version 5.0.2b only; version 5.0.3 only; version 5.0.4 only
  • Lotus Domino Mail Server: version 5.0.1 only; version 5.0.2 only; version 5.0.2b only; version 5.0.3 only; version 5.0.4 only

Published 2000-12-11. Last modified 2026-06-16.