Summary
Detail | |||
---|---|---|---|
Vendor | Novell | First view | 2006-06-29 |
Product | Groupwise | Last view | 2017-04-20 |
Version | 7.0 | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | * | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:novell:groupwise |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
9.8 | 2017-04-20 | CVE-2016-5762 | Integer overflow in the Post Office Agent in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 might allow remote attackers to execute arbitrary code via a long (1) username or (2) password, which triggers a heap-based buffer overflow. |
6.1 | 2017-04-20 | CVE-2016-5761 | Cross-site scripting (XSS) vulnerability in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 allows remote attackers to inject arbitrary web script or HTML via a crafted email. |
6.1 | 2017-04-20 | CVE-2016-5760 | Multiple cross-site scripting (XSS) vulnerabilities in the administrator console in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 allow remote attackers to inject arbitrary web script or HTML via the (1) token parameter to gwadmin-console/install/login.jsp or (2) PATH_INFO to gwadmin-console/index.jsp. |
4.3 | 2015-07-22 | CVE-2014-0611 | Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014 before Support Pack 2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
10 | 2014-09-04 | CVE-2014-0610 | The client in Novell GroupWise before 8.0.3 HP4, 2012 before SP3, and 2014 before SP1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (invalid pointer dereference) via unspecified vectors. |
4.3 | 2013-07-15 | CVE-2013-1087 | Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML via the body of an e-mail message. |
4.3 | 2013-04-19 | CVE-2013-1086 | Cross-site scripting (XSS) vulnerability in WebAccess in Novell GroupWise before 8.0.3 HP3, and 2012 before SP2, allows remote attackers to inject arbitrary web script or HTML via vectors involving an onError attribute. |
10 | 2012-09-19 | CVE-2012-0271 | Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before SP1 might allow remote attackers to execute arbitrary code via a crafted request that triggers a heap-based buffer overflow, as demonstrated by a request with -1 in the Content-Length HTTP header. |
4.3 | 2012-09-19 | CVE-2011-3827 | The iCalendar component in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted date-time string in a .ics attachment. |
5 | 2012-07-05 | CVE-2012-0410 | Directory traversal vulnerability in WebAccess in Novell GroupWise before 8.03 allows remote attackers to read arbitrary files via the User.interface parameter. |
6.5 | 2011-01-31 | CVE-2010-4717 | Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long (1) LIST or (2) LSUB command. |
4.3 | 2011-01-31 | CVE-2010-4716 | Cross-site scripting (XSS) vulnerability in the WebPublisher component in Novell GroupWise before 8.02HP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
5 | 2011-01-31 | CVE-2010-4715 | Multiple directory traversal vulnerabilities in the (1) WebAccess Agent and (2) Document Viewer Agent components in Novell GroupWise before 8.02HP allow remote attackers to read arbitrary files via unspecified vectors. NOTE: some of these details are obtained from third party information. |
10 | 2011-01-31 | CVE-2010-4714 | Multiple stack-based buffer overflows in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long HTTP Host header to (1) gwpoa.exe in the Post Office Agent, (2) gwmta.exe in the Message Transfer Agent, (3) gwia.exe in the Internet Agent, (4) the WebAccess Agent, or (5) the Monitor Agent. |
10 | 2011-01-31 | CVE-2010-4713 | Integer signedness error in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allows remote attackers to execute arbitrary code via a signed integer value in the Content-Type header. |
10 | 2011-01-31 | CVE-2010-4712 | Multiple stack-based buffer overflows in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a Content-Type header containing (1) multiple items separated by ; (semicolon) characters or (2) crafted string data. |
10 | 2011-01-31 | CVE-2010-4711 | Double free vulnerability in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allows remote attackers to execute arbitrary code via a large parameter in a LIST command. |
10 | 2011-01-28 | CVE-2010-4326 | Multiple buffer overflows in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via variables in a VCALENDAR message, as demonstrated by a long (1) REQUEST-STATUS, (2) TZNAME, (3) COMMENT, or (4) RRULE variable in this message. |
10 | 2011-01-28 | CVE-2010-4325 | Buffer overflow in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP2 allows remote attackers to execute arbitrary code via a crafted TZID variable in a VCALENDAR message. |
4.3 | 2010-03-03 | CVE-2009-4662 | Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 7.0 before 7.03 HP4 and 8.0 before 8.0 SP1 allows remote attackers to inject arbitrary web script or HTML via the User.Theme.index parameter. |
10 | 2009-05-26 | CVE-2009-1636 | Multiple buffer overflows in the Internet Agent (aka GWIA) component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 allow remote attackers to execute arbitrary code via (1) a crafted e-mail address in an SMTP session or (2) an SMTP command. |
7.5 | 2009-05-26 | CVE-2009-1634 | The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement session management mechanisms, which allows remote attackers to gain access to user accounts via unspecified vectors. |
4.3 | 2009-05-22 | CVE-2009-1762 | Multiple cross-site scripting (XSS) vulnerabilities in the WebAccess login page (aka gw/webacc) in Novell GroupWise 7.x before 7.03 HP2 allow remote attackers to inject arbitrary web script or HTML via the (1) GWAP.version or (2) User.Theme (aka User.Theme.index) parameter. |
4.3 | 2009-05-22 | CVE-2009-1635 | Multiple cross-site scripting (XSS) vulnerabilities in the WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 allow remote attackers to inject arbitrary web script or HTML via (1) the User.lang parameter to the login page (aka gw/webacc), (2) style expressions in a message that contains an HTML file, or (3) vectors associated with incorrect protection mechanisms against scripting, as demonstrated using whitespace between JavaScript event names and values. |
10 | 2009-02-03 | CVE-2009-0410 | Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote attackers to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
38% (12) | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') |
29% (9) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
6% (2) | CWE-200 | Information Exposure |
6% (2) | CWE-189 | Numeric Errors |
6% (2) | CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path ... |
3% (1) | CWE-399 | Resource Management Errors |
3% (1) | CWE-352 | Cross-Site Request Forgery (CSRF) |
3% (1) | CWE-264 | Permissions, Privileges, and Access Controls |
3% (1) | CWE-190 | Integer Overflow or Wraparound |
SAINT Exploits
Description | Link |
---|---|
Novell GroupWise WebAccess base64_decode buffer overflow | More info here |
Novell GroupWise Internet Agent e-mail address buffer overflow | More info here |
Open Source Vulnerability Database (OSVDB)
id | Description |
---|---|
70676 | Novell GroupWise Internet Agent Email Message VCALENDAR Data TZID Variable Re... |
69144 | Novell GroupWise WebAccess WebPublisher Unspecified XSS |
69143 | Novell GroupWise Multiple Agent HTTP 301 Response Host Header Overflow |
69142 | Novell GroupWise gwwww1.dll VCALENDAR Data Multiple Variable Overflow |
69141 | Novell GroupWise IMAP Services Multiple Command Overflow |
69140 | Novell GroupWise IMAP LIST Command Large Parameter Double-free Arbitrary Code... |
69139 | Novell GroupWise gwia.exe Email Message Content-Type Header Multiple Overflow |
69138 | Novell GroupWise Multiple Agent Unspecified Traversal Arbitrary File Access |
58167 | Novell GroupWise WebAccess User.Theme.index Parameter XSS |
54728 | Novell GroupWise gw/webacc Multiple Parameter XSS |
54645 | Novell GroupWise Internet Agent (GWIA) SMTP Email Address Processing Remote O... |
54644 | Novell GroupWise Internet Agent (GWIA) SMTP Request Handling Remote Overflow |
54643 | Novell GroupWise WebAccess /gw/webacc Login Page Multiple Parameter XSS |
54642 | Novell GroupWise WebAccess Mail Service Scripting Attack Authentication Bypass |
54641 | Novell GroupWise WebAccess Unfiltered Style Expressions XSS |
54640 | Novell GroupWise WebAccess Session Management Mechanism Bypass |
53985 | Novell GroupWise WebAccess HTML Attachment Unspecified XSS |
53984 | Novell GroupWise WebAccess HTML E-mail Unspecified XSS |
53983 | Novell GroupWise WebAccess gw/webacc Multiple Parameter XSS |
53982 | Novell GroupWise WebAccess Unspecified Information Disclosure |
53981 | Novell GroupWise WebAccess Multiple Unspecified Admin Function CSRF |
53980 | Novell GroupWise Internet Agent (GWIA) SMTP Daemon RCPT Command Remote Overflow |
46506 | Novell GroupWise WebAccess Simple Interface Unspecified XSS |
45742 | Apache HTTP Server on Novell Unspecified Request Directive Internal IP Disclo... |
44866 | Novell GroupWise mailto: URI Handling Remote Overflow |
ExploitDB Exploits
id | Description |
---|---|
7985 | Novell GroupWise <= 8.0 Malformed RCPT command Off-by-one Exploit |
OpenVAS Exploits
id | Description |
---|---|
2012-07-16 | Name : Novell Groupwise WebAccess 'User.interface' Parameter Directory Traversal Vul... File : nvt/gb_novell_groupwise_54253.nasl |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | RCPT TO overflow RuleID : 654-community - Type : SERVER-MAIL - Revision : 28 |
2014-01-10 | RCPT TO overflow RuleID : 654 - Type : SERVER-MAIL - Revision : 28 |
2015-09-23 | Novell GroupWise WebAccess cross-site scripting attempt RuleID : 35669 - Type : SERVER-WEBAPP - Revision : 2 |
2015-09-23 | Novell GroupWise WebAccess cross-site scripting attempt RuleID : 35668 - Type : SERVER-WEBAPP - Revision : 2 |
2014-01-10 | Novell GroupWise WebAccess directory traversal attempt - GET request RuleID : 24807 - Type : SERVER-WEBAPP - Revision : 3 |
2014-01-10 | Novell GroupWise WebAccess directory traversal attempt - POST request RuleID : 24806 - Type : SERVER-WEBAPP - Revision : 3 |
2014-01-10 | Novell GroupWise internet agent iCalendar parsing denial of service attempt RuleID : 24524 - Type : SERVER-MAIL - Revision : 7 |
2014-01-10 | Novell GroupWise Internet Agent content-length integer overflow attempt RuleID : 24239 - Type : SERVER-WEBAPP - Revision : 9 |
2014-01-10 | Novell GroupWise agents HTTP request remote code execution attempt RuleID : 18960 - Type : SERVER-WEBAPP - Revision : 9 |
2014-01-10 | Novell GroupWise Internet Agent RRULE parsing buffer overflow attempt RuleID : 18768 - Type : SERVER-MAIL - Revision : 20 |
2014-01-10 | RCPT TO overflow RuleID : 18574 - Type : SERVER-MAIL - Revision : 6 |
2014-01-10 | Novell GroupWise Internet Agent Email address processing buffer overflow attempt RuleID : 16597 - Type : SERVER-MAIL - Revision : 9 |
2014-01-10 | Novell Groupwise Internet Agent RCPT command overflow attempt RuleID : 16515 - Type : SERVER-MAIL - Revision : 9 |
2014-01-10 | Novell GroupWise Internet Agent SMTP AUTH LOGIN command buffer overflow attempt RuleID : 16193 - Type : SERVER-MAIL - Revision : 4 |
2014-01-10 | Novell GroupWise WebAccess authentication overflow RuleID : 10998 - Type : SERVER-OTHER - Revision : 10 |
Nessus® Vulnerability Scanner
id | Description |
---|---|
2015-10-26 | Name: The web application running on the remote host is affected by multiple cross-... File: groupwise_webaccess_CVE-2014-0611.nasl - Type: ACT_GATHER_INFO |
2015-08-03 | Name: The application installed on the remote host is affected by multiple cross-si... File: groupwise_webaccess_14_0_2.nasl - Type: ACT_GATHER_INFO |
2014-09-12 | Name: The remote Windows host contains an email application that is affected by mul... File: groupwise_client_803_hp4.nasl - Type: ACT_GATHER_INFO |
2013-07-19 | Name: The remote Windows host contains an email application that is affected by a c... File: groupwise_client_803_hp3.nasl - Type: ACT_GATHER_INFO |
2012-09-24 | Name: The remote Windows host has an application that is susceptible to a denial of... File: groupwise_ia_803.nasl - Type: ACT_GATHER_INFO |
2012-09-24 | Name: The remote Windows host has an application that is affected by a buffer overf... File: groupwise_ia_803_hp1.nasl - Type: ACT_GATHER_INFO |
2012-07-19 | Name: The application hosted on the remote web server has a cross-site scripting vu... File: groupwise_webaccess_userinterface_xss.nasl - Type: ACT_ATTACK |
2012-07-13 | Name: The application hosted on the remote web server has a directory traversal vul... File: groupwise_webaccess_userinterface_dir_trav.nasl - Type: ACT_ATTACK |
2011-01-28 | Name: The remote Windows host has an application that is affected by a buffer overf... File: groupwise_ia_802_hp2.nasl - Type: ACT_GATHER_INFO |
2010-11-23 | Name: The remote host has an application that is susceptible to a directory travers... File: groupwise_webaccess_802_hp1.nasl - Type: ACT_GATHER_INFO |
2010-11-23 | Name: The remote web server is susceptible to a directory traversal attack. File: groupwise_webaccess_arbitrary_file_download.nasl - Type: ACT_ATTACK |
2010-11-23 | Name: The remote Windows host has an application that is affected by multiple vulne... File: groupwise_ia_802_hp1.nasl - Type: ACT_GATHER_INFO |
2010-11-23 | Name: The remote web server is susceptible to a directory traversal attack. File: groupwise_dva_arbitrary_file_download.nasl - Type: ACT_ATTACK |
2009-06-01 | Name: The SMTP server running on the remote Windows host has multiple buffer overfl... File: groupwise_ia_multiple_overflows.nasl - Type: ACT_GATHER_INFO |
2009-05-27 | Name: The web application running on the remote host has a cross-site scripting vul... File: groupwise_webaccess_userlang_xss.nasl - Type: ACT_ATTACK |
2009-02-21 | Name: The remote web server contains a script that is prone to a cross-site scripti... File: groupwise_webaccess_userid_xss.nasl - Type: ACT_ATTACK |
2007-07-26 | Name: The remote Windows host contains an application that is affected by an inform... File: groupwise_client_mitm.nasl - Type: ACT_GATHER_INFO |
2007-04-23 | Name: It is possible to execute code on the remote host. File: groupwise_webaccess_overflow.nasl - Type: ACT_GATHER_INFO |
2006-07-05 | Name: The remote Windows host contains a mail client that may allow unauthorized ac... File: groupwise_client_email_access.nasl - Type: ACT_GATHER_INFO |