|
IBM Lotus Mobile Connect contains a flaw that may allow a remote denial of service. The issue is triggered when the Connection Manager fails to properly maintain a certain reference count, allowing a remote authenticated attacker to make invalid attempts at establishing sessions with the same VPN ID from multiple devices, causing a denial of service via IP address exhaustion.
|