First published: Wed Sep 19 2001(Updated: )
The default configuration of Lotus Domino server 5.0.8 includes system information (version, operating system, and build date) in the HTTP headers of replies, which allows remote attackers to obtain sensitive information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino Mail Server | =5.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1215 is classified as a medium severity vulnerability due to the exposure of sensitive system information.
To fix CVE-2000-1215, configure the Lotus Domino server to prevent sensitive information from being disclosed in HTTP headers.
CVE-2000-1215 affects Lotus Domino server version 5.0.8.
CVE-2000-1215 allows attackers to obtain system information such as version, operating system, and build date.
While CVE-2000-1215 is an older vulnerability, it can still pose a risk if outdated systems running this version of Lotus Domino are in use.