4.3

CVE-2009-5035

The Nokia client in IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle multiple outgoing e-mail messages between sync operations, which might allow remote attackers to read communications intended for other recipients by examining appended messages.

Data is provided by the National Vulnerability Database (NVD)
IbmLotus Notes Traveler Version <= 8.5.0.1
IbmLotus Notes Traveler Version8.0
IbmLotus Notes Traveler Version8.0.1
IbmLotus Notes Traveler Version8.0.1.2
IbmLotus Notes Traveler Version8.0.1.3
IbmLotus Notes Traveler Version8.5.0.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.23% 0.422
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.