Lotus Domino contains a flaw that allows a remote attacker to access databases via HTTP. By manipulating the URL of a document, an attacker can change key components to edit or delete web server content and all data entered is done so under another user ID.
Classification
Location:
Remote / Network Access
Solution
Upgrade to version 2.0 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.