Lotus Domino Web Server 5.x allows remote attackers to gain sensitive information by accessing the default navigator $defaultNav via (1) URL encoding the request, or (2) directly requesting the ReplicaID.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/3488 | vdb entry |
http://marc.info/?l=bugtraq&m=100448726831108&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7423 | vdb entry |