First published: Wed Dec 31 2003(Updated: )
Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a filename with a trailing dot.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino Server | =5.0 | |
IBM Lotus Domino Server | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-1408 is considered a medium severity vulnerability.
CVE-2003-1408 allows remote attackers to read the source code of files through specially crafted HTTP requests.
CVE-2003-1408 affects Lotus Domino Server versions 5.0 and 6.0.
To mitigate CVE-2003-1408, ensure that your server is upgraded to a patched version that does not allow source code exposure.
The attack vector for CVE-2003-1408 is through an HTTP request with a filename that includes a trailing dot.