MEDIUM · 6.8

CVE-2011-1032

IBM Lotus Connections 3.0, when IBM WebSphere Application Server 7.0.0.11 is used, does not properly restrict access to the internal login module, which has unspecified impact and attack vectors.

Vulnerability Description

IBM Lotus Connections 3.0, when IBM WebSphere Application Server 7.0.0.11 is used, does not properly restrict access to the internal login module, which has unspecified impact and attack vectors.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
IbmLotus Connections3.0
IbmWebsphere Application Server7.0.0.11

Related Weaknesses (CWE)

References

FAQ

What is CVE-2011-1032?

CVE-2011-1032 is a vulnerability with a CVSS score of 6.8 (MEDIUM). IBM Lotus Connections 3.0, when IBM WebSphere Application Server 7.0.0.11 is used, does not properly restrict access to the internal login module, which has unspecified impact and attack vectors.

How severe is CVE-2011-1032?

CVE-2011-1032 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-1032?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Lotus Connections, Ibm Websphere Application Server.