Executive Summary

Informations
Name CVE-2010-4549 First vendor Publication 2010-12-16
Vendor Cve Last vendor Modification 2010-12-17

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:S/C:N/I:P/A:N)
Cvss Base Score 4 Attack Range Network
Cvss Impact Score 2.9 Attack Complexity Low
Cvss Expoit Score 8 Authentication Requires single instance
Calculate full CVSS 2.0 Vectors scores

Detail

IBM Lotus Notes Traveler before 8.5.1.3 on the Nokia s60 device successfully performs a Replace Data operation for a prohibited application, which allows remote authenticated users to bypass intended access restrictions via this operation.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4549

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-264 Permissions, Privileges, and Access Controls

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 9

Open Source Vulnerability Database (OSVDB)

Id Description
69921 IBM Lotus Notes Traveler on Nokia s60 Prohibited Application Replace Data Ope...

IBM Lotus Notes Traveler contains a flaw related to the Replace Data operation for a prohibited application. This allows remote authenticated attackers to use this operation to bypass access restrictions.

Sources (Detail)

Source Url
AIXAPAR http://www-1.ibm.com/support/docview.wss?uid=swg1LO53572
CONFIRM http://www-10.lotus.com/ldd/dominowiki.nsf/dx/Lotus_Notes_Traveler_851_FP3_Re...
http://www-10.lotus.com/ldd/dominowiki.nsf/page.xsp?documentId=A6604E906E0DF2...

Alert History

If you want to see full details history, please login or register.
0
1
2
3
Date Informations
2020-05-23 01:43:11
  • Multiple Updates
2020-05-23 00:27:04
  • Multiple Updates
2016-06-29 00:16:46
  • Multiple Updates
2013-05-10 23:38:41
  • Multiple Updates