Lotus Domino Remote Authentication Bypass Vulnerability
BID:4022
Info
Lotus Domino Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 4022 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 04 2002 12:00AM |
| Updated: | Feb 04 2002 12:00AM |
| Credit: | Published by Gabriel A. Maggiotti <[email protected]>. |
| Vulnerable: |
Lotus Domino 5.0.9 a Lotus Domino 5.0.9 Lotus Domino 5.0.8 Lotus Domino 5.0.7 a Lotus Domino 5.0.7 Lotus Domino 5.0.6 Lotus Domino 5.0.5 Lotus Domino 5.0.4 Lotus Domino 5.0.3 Lotus Domino 5.0.2 Lotus Domino 5.0.1 Lotus Domino 5.0 |
| Not Vulnerable: | |
Discussion
Lotus Domino Remote Authentication Bypass Vulnerability
Lotus Domino Server is an application framework for web based collaborative software. It runs on multiple platforms including Windows and Unix.
Database files (.nsf) may be protected with a password under Domino. If a remote request for the file is submitted with a maliciously constructed filename of the correct length, the authentication process may be bypassed.
There have been multiple reports that this is a known issue, and only allows the remote user to access template (.ntf) files. There have been reports that this issue is fixed in Domino 5.0.9.
Lotus Domino Server is an application framework for web based collaborative software. It runs on multiple platforms including Windows and Unix.
Database files (.nsf) may be protected with a password under Domino. If a remote request for the file is submitted with a maliciously constructed filename of the correct length, the authentication process may be bypassed.
There have been multiple reports that this is a known issue, and only allows the remote user to access template (.ntf) files. There have been reports that this issue is fixed in Domino 5.0.9.
Exploit / POC
Lotus Domino Remote Authentication Bypass Vulnerability
No exploit code is required to take advantage of this issue.
No exploit code is required to take advantage of this issue.
Solution / Fix
Lotus Domino Remote Authentication Bypass Vulnerability
Solution:
It has been suggested that restricting anonymous access to sensitive files may prevent exploitation of this vulnerability.
There have been some reports that this issue is resolved in Lotus Domino 5.0.9, and in fully patched versions of 5.0.8.
Solution:
It has been suggested that restricting anonymous access to sensitive files may prevent exploitation of this vulnerability.
There have been some reports that this issue is resolved in Lotus Domino 5.0.9, and in fully patched versions of 5.0.8.
References
Lotus Domino Remote Authentication Bypass Vulnerability
References:
References:
- Hackproofing Lotus Domino Web Server (David Litchfield ([email protected]))
- Lotus Domino Product Homepage (IBM)