SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2010-4551

IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by omitting the Internet ID field in the person document, and then using an Apple device to (1) accept or…

MEDIUM 4.0EPSS 1.74%

Does this matter?

Lower severity and a low EPSS score (1.74%). Track it; it rarely justifies an emergency change on its own.

Description

IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by omitting the Internet ID field in the person document, and then using an Apple device to (1) accept or (2) decline an invitation.

CVSS 2.0
4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
EPSS
1.74% probability · 76th percentile
CISA KEV
Not listed
Affected
ibm/lotus notes traveler
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.