CVE-2011-1520
IBM Lotus Domino - Info Disclosure
Title source: llmDescription
The default configuration of the server console in IBM Lotus Domino does not require a password (aka Server_Console_Password), which allows physically proximate attackers to perform administrative changes or obtain sensitive information via a (1) Load, (2) Tell, or (3) Set Configuration command.
References (6)
Scores
EPSS
0.0010
EPSS Percentile
27.8%
Classification
CWE
CWE-287
Status
draft
Affected Products (1)
ibm/lotus_domino
Timeline
Published
Mar 25, 2011
Tracked Since
Feb 18, 2026