First published: Thu Dec 16 2010(Updated: )
IBM Lotus Notes Traveler before 8.5.1.3 on the Nokia s60 device successfully performs a Replace Data operation for a prohibited application, which allows remote authenticated users to bypass intended access restrictions via this operation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Notes Intellisync | <=8.5.1.2 | |
IBM Lotus Notes Intellisync | =8.0 | |
IBM Lotus Notes Intellisync | =8.0.1 | |
IBM Lotus Notes Intellisync | =8.0.1.2 | |
IBM Lotus Notes Intellisync | =8.0.1.3 | |
IBM Lotus Notes Intellisync | =8.5.0.0 | |
IBM Lotus Notes Intellisync | =8.5.0.1 | |
IBM Lotus Notes Intellisync | =8.5.0.2 | |
IBM Lotus Notes Intellisync | =8.5.1.1 | |
S60 Symbian OS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4549 has a medium severity level due to its potential to allow remote authenticated users to bypass access restrictions.
To fix CVE-2010-4549, upgrade your IBM Lotus Notes Traveler to version 8.5.1.3 or later.
The versions affected by CVE-2010-4549 include all versions prior to 8.5.1.3, including 8.5.1.2 and earlier.
Remote authenticated users on IBM Lotus Notes Traveler installations prior to version 8.5.1.3 on Nokia s60 devices are impacted by CVE-2010-4549.
CVE-2010-4549 allows remote authenticated users to perform a Replace Data operation for a prohibited application.