First published: Fri Oct 21 2011(Updated: )
The BlackBerry Collaboration Service in Research In Motion (RIM) BlackBerry Enterprise Server (BES) 5.0.3 through MR4 for Microsoft Exchange and Lotus Domino allows remote authenticated users to log into arbitrary user accounts associated with the same organization, and send messages, read messages, read contact lists, or cause a denial of service (login unavailability), via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlackBerry Enterprise Server | =5.0.3 | |
IBM Lotus Domino | ||
Microsoft Exchange Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0290 has a medium severity rating, indicating potential impact but requiring authentication to exploit.
To fix CVE-2011-0290, update the BlackBerry Enterprise Server to the latest version, addressing the vulnerability.
Users of BlackBerry Enterprise Server version 5.0.3 through MR4 for Microsoft Exchange and Lotus Domino are affected by CVE-2011-0290.
CVE-2011-0290 can be exploited through unauthorized access to arbitrary user accounts, allowing attackers to send and read messages.
There is no official workaround for CVE-2011-0290; updating to the latest software is recommended to mitigate the vulnerability.