5

CVE-2006-5835

Exploit

The Notes Remote Procedure Call (NRPC) protocol in IBM Lotus Notes Domino before 6.5.5 FP2 and 7.x before 7.0.2 does not require authentication to perform user lookups, which allows remote attackers to obtain the user ID file.

Data is provided by the National Vulnerability Database (NVD)
IbmLotus Notes Version5.0.3
IbmLotus Notes Version5.0.12
IbmLotus Notes Version6.0
IbmLotus Notes Version6.0.1
IbmLotus Notes Version6.0.2
IbmLotus Notes Version6.0.3
IbmLotus Notes Version6.0.4
IbmLotus Notes Version6.0.5
IbmLotus Notes Version6.5
IbmLotus Notes Version6.5.1
IbmLotus Notes Version6.5.2
IbmLotus Notes Version6.5.3
IbmLotus Notes Version6.5.4
IbmLotus Notes Version6.5.5
IbmLotus Notes Version7.0
IbmLotus Notes Version7.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.02% 0.83
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N