Security Advisory

CVE-2016-0304

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-06-29 01:00:00
Last updated 2024-08-05 22:15:23
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

The Java Console in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6, when a certain unsupported configuration involving UNC share pathnames is used, allows remote attackers to bypass authentication and possibly execute arbitrary code via unspecified vectors, aka SPR KLYHA7MM3J. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-0920.