9.3
CVSSv2

CVE-2011-0920

Published: 08/02/2011 Updated: 14/02/2011
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Remote Console in IBM Lotus Domino, when a certain unsupported configuration involving UNC share pathnames is used, allows remote malicious users to bypass authentication and execute arbitrary code via unspecified vectors, aka SPR PRAD89WGRS.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm lotus domino

Exploits

# Exploit Title: IBM Lotus Domino Controller auth bypass # Date:30/11/2011 # Author: Alexey Sintsov # Software Link: wwwibmcom/ # Version:853/852 FP3 (0day)  # Tested on: Windows 7 / Windows 2008 # CVE : CVE-2011-1519 Application: IBM Lotus Domino Controller Versions Affected: <=852 FP3, <=853 Manager 40 prior to Update ...