CVE-2001-0847: High severity lotus domino web server vulnerability
Published Nov 22, 2001
·Updated
Lotus Domino Web Server 5.x allows remote attackers to gain sensitive information by accessing the default navigator $defaultNav via (1) URL encoding the request, or (2) directly requesting the ReplicaID.
Affected Software
1 affected component
Lotus Domino Web Server=5.x
Event History
Nov 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0847?
CVE-2001-0847 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2001-0847?
To fix CVE-2001-0847, it is recommended to upgrade Lotus Domino Web Server to a version that addresses this vulnerability.
3
What are the main risks associated with CVE-2001-0847?
The main risk of CVE-2001-0847 is that remote attackers can gain unauthorized access to sensitive information via default navigator access.
4
Is CVE-2001-0847 exploitable without authentication?
Yes, CVE-2001-0847 can be exploited by remote attackers without requiring authentication.
5
Which versions of Lotus Domino Web Server are affected by CVE-2001-0847?
CVE-2001-0847 affects only Lotus Domino Web Server version 5.x.