Vulnerability Details CVE-2010-4593
The Connection Manager in IBM Lotus Mobile Connect before 6.1.4 does not properly maintain a certain reference count, which allows remote authenticated users to cause a denial of service (IP address exhaustion) by making invalid attempts to establish sessions with the same VPN ID from multiple devices.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.1%
CVSS Severity
CVSS v2 Score 4.0
Products affected by CVE-2010-4593
-
cpe:2.3:a:ibm:lotus_mobile_connect:6.1
-
cpe:2.3:a:ibm:lotus_mobile_connect:6.1.1
-
cpe:2.3:a:ibm:lotus_mobile_connect:6.1.1.1
-
cpe:2.3:a:ibm:lotus_mobile_connect:6.1.2
-
cpe:2.3:a:ibm:lotus_mobile_connect:6.1.3