Vulnerability Name: | CCN-4505 | ||||||
Published: | 2000-05-19 | ||||||
Updated: | 2000-05-19 | ||||||
Summary: | Some Web applications that run on Lotus Domino Server could allow unauthorized access to private Web pages. If the applications rely on improperly configured access control lists (ACLs), a remote attacker can bypass the login procedure to access private Web pages. This vulnerability is restricted to certain Web applications with inappropriate ACLs and is not a part of the Lotus Domino platform. | ||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||
CVSS v2 Severity: | 7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||
Vulnerability Consequences: | Gain Access | ||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri May 19 2000 - 21:01:13 CDT Black Watch Labs Vulnerability Alert Source: XF Type: UNKNOWN domino-web-apps-access(4505) | ||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||
BACK |