CVE-2013-0536: IBM Lotus Inotes

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

ntmulti.exe in the Multi User Profile Cleanup service in IBM Notes 8.0, 8.0.1, 8.0.2, 8.5, 8.5.1, 8.5.2, 8.5.3 before FP5, and 9.0 before IF2 allows local users to gain privileges via vectors that arrange for code to be executed during the next login session of a different user, aka SPR PJOK959J24.

Affected products

  • IBM Lotus Inotes: version 8.5.2.0 only; version 8.5.3.0 only
  • IBM Lotus Notes: version 8.0 only; version 8.0.1 only; version 8.0.2 only; version 8.5 only; version 8.5.1 only
  • IBM Lotus Notes Traveler: version 9.0 only

Published 2013-06-21. Last modified 2026-06-16.