PT-2001-1238 · Ibm · Lotus Domino Server
Published
2001-09-19
·
Updated
2017-07-11
·
CVE-2000-1215
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Lotus Domino server version 5.0.8
Description:
The default configuration of the server includes system information, such as version, operating system, and build date, in the HTTP headers of replies. This allows remote attackers to obtain sensitive information.
Recommendations:
For Lotus Domino server version 5.0.8, consider modifying the configuration to exclude system information from HTTP headers to prevent the disclosure of sensitive data.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lotus Domino Server