IBM Domino < 9.0.1 Unspecified IMAP Remote Denial of Service Vulnerability

high Nessus Network Monitor Plugin ID 8126

Synopsis

The remote mail server is affected by a remote denial of service.

Description

According to its IMAP banner, the version of IBM Domino on the remote host may be vulnerable to a remote denial of service, the details of which have not been publicly released. The vendor has released fixes to address this vulnerability.

Solution

Upgrade to version 9.0.1 Fix Pack 1, 9.0.1 Interim Fix 2, 8.5.3 Fix Pack 6 Interim Fix 1, or higher, to address this vulnerability.

See Also

http://www-01.ibm.com/support/docview.wss?uid=swg21657963

http://www-01.ibm.com/support/docview.wss?uid=swg21663023

http://www-01.ibm.com/support/docview.wss?uid=swg21663874

http://www.cnnvd.org.cn/vulnerability/show/cv_id/2014020083

Plugin Details

Severity: High

ID: 8126

Family: IMAP Servers

Published: 2/19/2014

Updated: 3/6/2019

Risk Information

VPR

Risk Factor: Low

Score: 2.7

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS v3

Risk Factor: High

Base Score: 7.5

Temporal Score: 7.2

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:X/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:ibm:lotus_domino

Patch Publication Date: 2/5/2014

Vulnerability Publication Date: 2/5/2014

Reference Information

CVE: CVE-2014-0822

BID: 65427