Vulnerability Description
The default configuration of Lotus Domino server 5.0.8 includes system information (version, operating system, and build date) in the HTTP headers of replies, which allows remote attackers to obtain sensitive information.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Lotus Domino | 5.0.8 |
References
- http://marc.info/?l=bugtraq&m=100094373621813&w=2
- http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/55522
- http://www.kb.cert.org/vuls/id/984555US Government Resource
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10685
- http://marc.info/?l=bugtraq&m=100094373621813&w=2
- http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/55522
- http://www.kb.cert.org/vuls/id/984555US Government Resource
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10685
FAQ
What is CVE-2000-1215?
CVE-2000-1215 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The default configuration of Lotus Domino server 5.0.8 includes system information (version, operating system, and build date) in the HTTP headers of replies, which allows remote attackers to obtain s...
How severe is CVE-2000-1215?
CVE-2000-1215 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-1215?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Lotus Domino.