The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the execution of the getSystemResource method.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html | Broken Link |
http://www.securityfocus.com/bid/1994 | Broken Link Exploit Third Party Advisory VDB Entry Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html | Broken Link |
http://www.securityfocus.com/bid/1994 | Broken Link Exploit Third Party Advisory VDB Entry Vendor Advisory |
Configurations
History
20 Nov 2024, 23:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html - Broken Link | |
References | () http://www.securityfocus.com/bid/1994 - Broken Link, Exploit, Third Party Advisory, VDB Entry, Vendor Advisory |
14 Feb 2024, 15:16
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-203 | |
References | (BUGTRAQ) http://archives.neohapsis.com/archives/bugtraq/2000-11/0341.html - Broken Link | |
References | (BID) http://www.securityfocus.com/bid/1994 - Broken Link, Exploit, Third Party Advisory, VDB Entry, Vendor Advisory |
Information
Published : 2001-01-09 05:00
Updated : 2024-11-20 23:34
NVD link : CVE-2000-1117
Mitre link : CVE-2000-1117
CVE.ORG link : CVE-2000-1117
JSON object : View
Products Affected
ibm
- lotus_notes
CWE
CWE-203
Observable Discrepancy