Policy Application Bypass in IBM Lotus Notes Traveler Across Domains
CVE-2010-4547
Currently unrated
Summary
IBM Lotus Notes Traveler prior to version 8.5.1.3 exhibits a vulnerability in which policy documents are improperly enforced for mobile users operating in a multidomain environment. This flaw permits remote authenticated users to exploit their credentials from a separate Domino domain, effectively circumventing the intended access controls and posing a significant security risk to organizational data.
References
Timeline
Vulnerability Reserved
Vulnerability published