Lucene search

K
nvd[email protected]NVD:CVE-2012-5309
HistoryOct 08, 2012 - 10:47 a.m.

CVE-2012-5309

2012-10-0810:47:45
CWE-287
web.nvd.nist.gov
6

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.004

Percentile

74.4%

servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 does not properly restrict invalid authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.

Affected configurations

Nvd
Node
ibmlotus_notes_travelerMatch8.5.0.0
OR
ibmlotus_notes_travelerMatch8.5.0.1
OR
ibmlotus_notes_travelerMatch8.5.0.2
OR
ibmlotus_notes_travelerMatch8.5.1.1
OR
ibmlotus_notes_travelerMatch8.5.1.2
OR
ibmlotus_notes_travelerMatch8.5.1.3
OR
ibmlotus_notes_travelerMatch8.5.2.1
OR
ibmlotus_notes_travelerMatch8.5.3
OR
ibmlotus_notes_travelerMatch8.5.3.1
OR
ibmlotus_notes_travelerMatch8.5.3.2
OR
ibmlotus_notes_travelerMatch8.5.3.3
OR
ibmlotus_notes_travelerMatch8.5.3.3interim_fix_1
VendorProductVersionCPE
ibmlotus_notes_traveler8.5.0.0cpe:2.3:a:ibm:lotus_notes_traveler:8.5.0.0:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.0.1cpe:2.3:a:ibm:lotus_notes_traveler:8.5.0.1:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.0.2cpe:2.3:a:ibm:lotus_notes_traveler:8.5.0.2:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.1.1cpe:2.3:a:ibm:lotus_notes_traveler:8.5.1.1:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.1.2cpe:2.3:a:ibm:lotus_notes_traveler:8.5.1.2:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.1.3cpe:2.3:a:ibm:lotus_notes_traveler:8.5.1.3:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.2.1cpe:2.3:a:ibm:lotus_notes_traveler:8.5.2.1:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.3cpe:2.3:a:ibm:lotus_notes_traveler:8.5.3:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.3.1cpe:2.3:a:ibm:lotus_notes_traveler:8.5.3.1:*:*:*:*:*:*:*
ibmlotus_notes_traveler8.5.3.2cpe:2.3:a:ibm:lotus_notes_traveler:8.5.3.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.004

Percentile

74.4%

Related for NVD:CVE-2012-5309