Release date:
Updated on:
Affected Systems:
IBM Lotus Domino 8.5.3
IBM Lotus Domino 8.5.2
IBM Lotus Domino 8.5.1
IBM Lotus Domino 8.5
Description:
--------------------------------------------------------------------------------
Bugtraq id: 58652
CVE (CAN) ID: CVE-2013-0487
IBM Lotus Domino is a server product that provides enterprise-level email, collaboration, and custom application platforms.
The Java console in IBM Domino 8.5.x has a security vulnerability in configuration details, allowing authenticated remote attackers to hijack temporary certificates.
<* Source: vendor
Link: http://xforce.iss.net/xforce/xfdb/81852
Http://web.nvd.nist.gov/view/vuln/detail? VulnId = CVE-2013-0487
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
IBM
---
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.ibm.com/support/fixcentral/