First published: Mon Nov 30 2020(Updated: )
HCL Domino is susceptible to a lockout policy bypass vulnerability in the LDAP service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the LDAP service. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Hcl Domino | <9.0.1 | |
Hcltech Hcl Domino | >=10.0.0<10.0.1 | |
Hcltech Hcl Domino | >=11.0.0<11.0.1 | |
Hcltech Hcl Domino | =9.0.1-feature_pack_10_interim_fix_2 | |
Hcltech Hcl Domino | =9.0.1-feature_pack_10_interim_fix_3 | |
Hcltech Hcl Domino | =9.0.1-feature_pack_10_interim_fix_4 | |
Hcltech Hcl Domino | =9.0.1-feature_pack_10_interim_fix_5 | |
Hcltech Hcl Domino | =10.0.1-fixpack1 | |
Hcltech Hcl Domino | =10.0.1-fixpack2 | |
Hcltech Hcl Domino | =10.0.1-fixpack3 | |
Hcltech Hcl Domino | =10.0.1-fixpack4 | |
Hcltech Hcl Domino | =10.0.1-fixpack5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.