Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-0119

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2006-0119
Last Modified 06 Sep 2011 12:00:00
Published 09 Jan 2006 06:03:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-0119

Summary

Multiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 have unknown impact and attack vectors, due to "potential security issues" as identified by SPR numbers (1) GPKS6C9J67 in Agents, (2) JGAN6B6TZ3 and (3) KSPR699NBP in the Router, (4) GPKS5YQGPT in Security, or (5) HSAO6BNL6Y in the Web Server. NOTE: vector 3 is related to an issue in NROUTER in IBM Lotus Notes and Domino Server before 6.5.4 FP1, 6.5.5, and 7.0, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted vCal meeting request sent via SMTP (aka SPR# KSPR699NBP).

Vulnerable Systems

Application

  • Ibm Lotus Domino 6.5.0

  • Ibm Lotus Domino 6.5.1

  • Ibm Lotus Domino 6.5.2

  • Ibm Lotus Domino 6.5.3

  • Ibm Lotus Domino 6.5.4

  • Ibm Lotus Domino Enterprise Server 6.5.2

  • Ibm Lotus Domino Enterprise Server 6.5.4

  • Ibm Lotus Notes 6.5

  • Ibm Lotus Notes 6.5.1

  • Ibm Lotus Notes 6.5.2

  • Ibm Lotus Notes 6.5.3

  • Ibm Lotus Notes 6.5.4


References

BID - 16158

SECUNIA - 18328

XF - domino-smtp-nrouter-dos(27413)

XF - lotus-web-unspecified-xss(24211)

XF - lotus-multiple-unspecified(24207)

VUPEN - ADV-2006-2564

VUPEN - ADV-2006-0081

BID - 18020

BUGTRAQ - 20060626 SYMSA-2006-006: Lotus Domino SMTP Based Denial of Service

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/f97fe7cfd9a8113b8525709200001db4?OpenDocument&Highlight=0,GPKS6C9J67

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/e4deb1cbb011c747852570e4001ba9bb?OpenDocument&Highlight=0,GPKS5YQGPT

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/de2ab57a5b9547848525701b00420c2c?OpenDocument&Highlight=0,KSPR699NBP

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/d1150fc9c5dec8b18525709200001da6?OpenDocument&Highlight=0,GPKS6C9J67

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/9a1650d1a771f3078525702a00420def?OpenDocument&Highlight=0,HSAO6BNL6Y

CONFIRM - http://www-10.lotus.com/ldd/r5fixlist.nsf/5c087391999d06e7852569280062619d/94a77eb898843aca8525709200001de1?OpenDocument&Highlight=0,JGAN6B6TZ3

CONFIRM - http://www-1.ibm.com/support/docview.wss?uid=swg27007054

SECTRACK - 1016390

SECUNIA - 20855


Last Updated: 27 May 2016 10:41:32