CVE-2009-5033
16.12.2010, 20:00
IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle a "* *" argument sequence for a certain tell command, which allows remote authenticated users to obtain access to other users' data via a sync operation, related to storage of the data of multiple users within the same thread.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | lotus_notes_traveler | 𝑥 ≤ 8.5.0.1 |
ibm | lotus_notes_traveler | 8.0 |
ibm | lotus_notes_traveler | 8.0.1 |
ibm | lotus_notes_traveler | 8.0.1.2 |
ibm | lotus_notes_traveler | 8.0.1.3 |
ibm | lotus_notes_traveler | 8.5.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References