CVE-2007-0068: Critical severity IBM Lotus Domino vulnerability
IBM Lotus Domino 7.0.x before 7.0.3 does not revalidate the signature on a signed scheduled agent after the agent is modified, which allows remote authenticated users to gain privileges via a modified agent in a server database.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0068?
CVE-2007-0068 has a medium severity rating due to its potential to allow privilege escalation for remote authenticated users.
How do I fix CVE-2007-0068?
To resolve CVE-2007-0068, upgrade IBM Lotus Domino to version 7.0.3 or later where the issue has been addressed.
Who is affected by CVE-2007-0068?
Users of IBM Lotus Domino versions 7.0, 7.0.1, and 7.0.2 are impacted by CVE-2007-0068.
What is the vulnerability in CVE-2007-0068?
CVE-2007-0068 allows remote authenticated users to gain elevated privileges by exploiting a flaw in agent signature revalidation.
Can CVE-2007-0068 be exploited remotely?
Yes, CVE-2007-0068 can be exploited by remote authenticated users through a modified agent in a server database.