Lotus Domino Server Vulnerability: Bypassing Security Restrictions and Unauthorized Access to Notes Database Files

Lotus Domino Server Vulnerability: Bypassing Security Restrictions and Unauthorized Access to Notes Database Files

CVE-2001-1567 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Lotus Domino server 5.0.9a and earlier allows remote attackers to bypass security restrictions and view Notes database files and possibly sensitive Notes template files (.ntf) via an HTTP request with a large number of "+" characters before the .nsf file extension, which are converted to spaces by Domino.

Learn more about our Cis Benchmark Audit For Server Software.