IBM Lotus Notes 6.5.4 and 6.5.5, and 7.0.0 and 7.0.1, uses insecure default permissions (Everyone/Full Control) for the "Notes" folder and all children, which allows local users to gain privileges and modify, add, or delete files in that folder.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm lotus notes 6.5.4 |
||
ibm lotus notes 6.5.5 |
||
ibm lotus notes 7.0.0 |
||
ibm lotus notes 7.0.1 |