18 results (0.006 seconds)

CVSS: 6.5EPSS: 0%CPEs: 3EXPL: 1

21 Oct 2011 — The BlackBerry Collaboration Service in Research In Motion (RIM) BlackBerry Enterprise Server (BES) 5.0.3 through MR4 for Microsoft Exchange and Lotus Domino allows remote authenticated users to log into arbitrary user accounts associated with the same organization, and send messages, read messages, read contact lists, or cause a denial of service (login unavailability), via unspecified vectors. BlackBerry Collaboration Service en Research In Motion (RIM) BlackBerry Enterprise Server (BES) v5.0.3 a través d... • http://secunia.com/advisories/46370 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1

31 Dec 2003 — Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a filename with a trailing dot. • http://www.securityfocus.com/archive/1/311660 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

22 Nov 2001 — Lotus Domino Web Server 5.x allows remote attackers to gain sensitive information by accessing the default navigator $defaultNav via (1) URL encoding the request, or (2) directly requesting the ReplicaID. • http://marc.info/?l=bugtraq&m=100448726831108&w=2 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via URL requests (>8Kb) containing a large number of '/' characters. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0174.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0174.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via HTTP requests containing certain combinations of UNICODE characters. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0174.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated URL requests with the same HTTP headers, such as (1) Accept, (2) Accept-Charset, (3) Accept-Encoding, (4) Accept-Language, and (5) Content-Type. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0174.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeatedly sending large (> 10Kb) amounts of data to the DIIOP - CORBA service on TCP port 63148. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0174.html •

CVSS: 7.5EPSS: 3%CPEs: 1EXPL: 0

02 Jul 2001 — Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script. • http://www.iss.net/security_center/static/6789.php •

CVSS: 9.8EPSS: 4%CPEs: 1EXPL: 1

07 May 2001 — Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long "RCPT TO" command. • http://archives.neohapsis.com/archives/bugtraq/2001-01/0360.html •