Lotus Domino web server 5.08 allows remote attackers to determine the internal IP address of the server when NAT is enabled via a GET request that contains a long sequence of / (slash) characters.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=100094373621813&w=2 | mailing list |
http://www.securityfocus.com/bid/3350 | vdb entry vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7180 | vdb entry |