Vulnerabilities > CVE-2010-2279 - Remote Security vulnerability in Lotus Connections 2.5.0/2.5.0.1

047910
CVSS 7.6 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
high complexity
ibm

Summary

The Top Updates implementation in the Homepage component in IBM Lotus Connections 2.5.x before 2.5.0.2, when "forced SSL" is enabled, uses http for links, which has unspecified impact and remote attack vectors.

Vulnerable Configurations

Part Description Count
Application
Ibm
2