This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Novell First view 2006-06-29
Product Groupwise Last view 2017-04-20
Version 7.0 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:novell:groupwise

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
9.8 2017-04-20 CVE-2016-5762

Integer overflow in the Post Office Agent in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 might allow remote attackers to execute arbitrary code via a long (1) username or (2) password, which triggers a heap-based buffer overflow.

6.1 2017-04-20 CVE-2016-5761

Cross-site scripting (XSS) vulnerability in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 allows remote attackers to inject arbitrary web script or HTML via a crafted email.

6.1 2017-04-20 CVE-2016-5760

Multiple cross-site scripting (XSS) vulnerabilities in the administrator console in Novell GroupWise before 2014 R2 Service Pack 1 Hot Patch 1 allow remote attackers to inject arbitrary web script or HTML via the (1) token parameter to gwadmin-console/install/login.jsp or (2) PATH_INFO to gwadmin-console/index.jsp.

4.3 2015-07-22 CVE-2014-0611

Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014 before Support Pack 2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

10 2014-09-04 CVE-2014-0610

The client in Novell GroupWise before 8.0.3 HP4, 2012 before SP3, and 2014 before SP1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (invalid pointer dereference) via unspecified vectors.

4.3 2013-07-15 CVE-2013-1087

Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML via the body of an e-mail message.

4.3 2013-04-19 CVE-2013-1086

Cross-site scripting (XSS) vulnerability in WebAccess in Novell GroupWise before 8.0.3 HP3, and 2012 before SP2, allows remote attackers to inject arbitrary web script or HTML via vectors involving an onError attribute.

10 2012-09-19 CVE-2012-0271

Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before SP1 might allow remote attackers to execute arbitrary code via a crafted request that triggers a heap-based buffer overflow, as demonstrated by a request with -1 in the Content-Length HTTP header.

4.3 2012-09-19 CVE-2011-3827

The iCalendar component in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted date-time string in a .ics attachment.

5 2012-07-05 CVE-2012-0410

Directory traversal vulnerability in WebAccess in Novell GroupWise before 8.03 allows remote attackers to read arbitrary files via the User.interface parameter.

6.5 2011-01-31 CVE-2010-4717

Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long (1) LIST or (2) LSUB command.

4.3 2011-01-31 CVE-2010-4716

Cross-site scripting (XSS) vulnerability in the WebPublisher component in Novell GroupWise before 8.02HP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

5 2011-01-31 CVE-2010-4715

Multiple directory traversal vulnerabilities in the (1) WebAccess Agent and (2) Document Viewer Agent components in Novell GroupWise before 8.02HP allow remote attackers to read arbitrary files via unspecified vectors. NOTE: some of these details are obtained from third party information.

10 2011-01-31 CVE-2010-4714

Multiple stack-based buffer overflows in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long HTTP Host header to (1) gwpoa.exe in the Post Office Agent, (2) gwmta.exe in the Message Transfer Agent, (3) gwia.exe in the Internet Agent, (4) the WebAccess Agent, or (5) the Monitor Agent.

10 2011-01-31 CVE-2010-4713

Integer signedness error in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allows remote attackers to execute arbitrary code via a signed integer value in the Content-Type header.

10 2011-01-31 CVE-2010-4712

Multiple stack-based buffer overflows in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a Content-Type header containing (1) multiple items separated by ; (semicolon) characters or (2) crafted string data.

10 2011-01-31 CVE-2010-4711

Double free vulnerability in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allows remote attackers to execute arbitrary code via a large parameter in a LIST command.

10 2011-01-28 CVE-2010-4326

Multiple buffer overflows in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via variables in a VCALENDAR message, as demonstrated by a long (1) REQUEST-STATUS, (2) TZNAME, (3) COMMENT, or (4) RRULE variable in this message.

10 2011-01-28 CVE-2010-4325

Buffer overflow in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP2 allows remote attackers to execute arbitrary code via a crafted TZID variable in a VCALENDAR message.

4.3 2010-03-03 CVE-2009-4662

Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 7.0 before 7.03 HP4 and 8.0 before 8.0 SP1 allows remote attackers to inject arbitrary web script or HTML via the User.Theme.index parameter.

10 2009-05-26 CVE-2009-1636

Multiple buffer overflows in the Internet Agent (aka GWIA) component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 allow remote attackers to execute arbitrary code via (1) a crafted e-mail address in an SMTP session or (2) an SMTP command.

7.5 2009-05-26 CVE-2009-1634

The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement session management mechanisms, which allows remote attackers to gain access to user accounts via unspecified vectors.

4.3 2009-05-22 CVE-2009-1762

Multiple cross-site scripting (XSS) vulnerabilities in the WebAccess login page (aka gw/webacc) in Novell GroupWise 7.x before 7.03 HP2 allow remote attackers to inject arbitrary web script or HTML via the (1) GWAP.version or (2) User.Theme (aka User.Theme.index) parameter.

4.3 2009-05-22 CVE-2009-1635

Multiple cross-site scripting (XSS) vulnerabilities in the WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 allow remote attackers to inject arbitrary web script or HTML via (1) the User.lang parameter to the login page (aka gw/webacc), (2) style expressions in a message that contains an HTML file, or (3) vectors associated with incorrect protection mechanisms against scripting, as demonstrated using whitespace between JavaScript event names and values.

10 2009-02-03 CVE-2009-0410

Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote attackers to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow.

CWE : Common Weakness Enumeration

%idName
38% (12) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')
29% (9) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
6% (2) CWE-200 Information Exposure
6% (2) CWE-189 Numeric Errors
6% (2) CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path ...
3% (1) CWE-399 Resource Management Errors
3% (1) CWE-352 Cross-Site Request Forgery (CSRF)
3% (1) CWE-264 Permissions, Privileges, and Access Controls
3% (1) CWE-190 Integer Overflow or Wraparound

SAINT Exploits

Description Link
Novell GroupWise WebAccess base64_decode buffer overflow More info here
Novell GroupWise Internet Agent e-mail address buffer overflow More info here

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
70676 Novell GroupWise Internet Agent Email Message VCALENDAR Data TZID Variable Re...
69144 Novell GroupWise WebAccess WebPublisher Unspecified XSS
69143 Novell GroupWise Multiple Agent HTTP 301 Response Host Header Overflow
69142 Novell GroupWise gwwww1.dll VCALENDAR Data Multiple Variable Overflow
69141 Novell GroupWise IMAP Services Multiple Command Overflow
69140 Novell GroupWise IMAP LIST Command Large Parameter Double-free Arbitrary Code...
69139 Novell GroupWise gwia.exe Email Message Content-Type Header Multiple Overflow
69138 Novell GroupWise Multiple Agent Unspecified Traversal Arbitrary File Access
58167 Novell GroupWise WebAccess User.Theme.index Parameter XSS
54728 Novell GroupWise gw/webacc Multiple Parameter XSS
54645 Novell GroupWise Internet Agent (GWIA) SMTP Email Address Processing Remote O...
54644 Novell GroupWise Internet Agent (GWIA) SMTP Request Handling Remote Overflow
54643 Novell GroupWise WebAccess /gw/webacc Login Page Multiple Parameter XSS
54642 Novell GroupWise WebAccess Mail Service Scripting Attack Authentication Bypass
54641 Novell GroupWise WebAccess Unfiltered Style Expressions XSS
54640 Novell GroupWise WebAccess Session Management Mechanism Bypass
53985 Novell GroupWise WebAccess HTML Attachment Unspecified XSS
53984 Novell GroupWise WebAccess HTML E-mail Unspecified XSS
53983 Novell GroupWise WebAccess gw/webacc Multiple Parameter XSS
53982 Novell GroupWise WebAccess Unspecified Information Disclosure
53981 Novell GroupWise WebAccess Multiple Unspecified Admin Function CSRF
53980 Novell GroupWise Internet Agent (GWIA) SMTP Daemon RCPT Command Remote Overflow
46506 Novell GroupWise WebAccess Simple Interface Unspecified XSS
45742 Apache HTTP Server on Novell Unspecified Request Directive Internal IP Disclo...
44866 Novell GroupWise mailto: URI Handling Remote Overflow

ExploitDB Exploits

id Description
7985 Novell GroupWise <= 8.0 Malformed RCPT command Off-by-one Exploit

OpenVAS Exploits

id Description
2012-07-16 Name : Novell Groupwise WebAccess 'User.interface' Parameter Directory Traversal Vul...
File : nvt/gb_novell_groupwise_54253.nasl

Snort® IPS/IDS

Date Description
2014-01-10 RCPT TO overflow
RuleID : 654-community - Type : SERVER-MAIL - Revision : 28
2014-01-10 RCPT TO overflow
RuleID : 654 - Type : SERVER-MAIL - Revision : 28
2015-09-23 Novell GroupWise WebAccess cross-site scripting attempt
RuleID : 35669 - Type : SERVER-WEBAPP - Revision : 2
2015-09-23 Novell GroupWise WebAccess cross-site scripting attempt
RuleID : 35668 - Type : SERVER-WEBAPP - Revision : 2
2014-01-10 Novell GroupWise WebAccess directory traversal attempt - GET request
RuleID : 24807 - Type : SERVER-WEBAPP - Revision : 3
2014-01-10 Novell GroupWise WebAccess directory traversal attempt - POST request
RuleID : 24806 - Type : SERVER-WEBAPP - Revision : 3
2014-01-10 Novell GroupWise internet agent iCalendar parsing denial of service attempt
RuleID : 24524 - Type : SERVER-MAIL - Revision : 7
2014-01-10 Novell GroupWise Internet Agent content-length integer overflow attempt
RuleID : 24239 - Type : SERVER-WEBAPP - Revision : 9
2014-01-10 Novell GroupWise agents HTTP request remote code execution attempt
RuleID : 18960 - Type : SERVER-WEBAPP - Revision : 9
2014-01-10 Novell GroupWise Internet Agent RRULE parsing buffer overflow attempt
RuleID : 18768 - Type : SERVER-MAIL - Revision : 20
2014-01-10 RCPT TO overflow
RuleID : 18574 - Type : SERVER-MAIL - Revision : 6
2014-01-10 Novell GroupWise Internet Agent Email address processing buffer overflow attempt
RuleID : 16597 - Type : SERVER-MAIL - Revision : 9
2014-01-10 Novell Groupwise Internet Agent RCPT command overflow attempt
RuleID : 16515 - Type : SERVER-MAIL - Revision : 9
2014-01-10 Novell GroupWise Internet Agent SMTP AUTH LOGIN command buffer overflow attempt
RuleID : 16193 - Type : SERVER-MAIL - Revision : 4
2014-01-10 Novell GroupWise WebAccess authentication overflow
RuleID : 10998 - Type : SERVER-OTHER - Revision : 10

Nessus® Vulnerability Scanner

id Description
2015-10-26 Name: The web application running on the remote host is affected by multiple cross-...
File: groupwise_webaccess_CVE-2014-0611.nasl - Type: ACT_GATHER_INFO
2015-08-03 Name: The application installed on the remote host is affected by multiple cross-si...
File: groupwise_webaccess_14_0_2.nasl - Type: ACT_GATHER_INFO
2014-09-12 Name: The remote Windows host contains an email application that is affected by mul...
File: groupwise_client_803_hp4.nasl - Type: ACT_GATHER_INFO
2013-07-19 Name: The remote Windows host contains an email application that is affected by a c...
File: groupwise_client_803_hp3.nasl - Type: ACT_GATHER_INFO
2012-09-24 Name: The remote Windows host has an application that is susceptible to a denial of...
File: groupwise_ia_803.nasl - Type: ACT_GATHER_INFO
2012-09-24 Name: The remote Windows host has an application that is affected by a buffer overf...
File: groupwise_ia_803_hp1.nasl - Type: ACT_GATHER_INFO
2012-07-19 Name: The application hosted on the remote web server has a cross-site scripting vu...
File: groupwise_webaccess_userinterface_xss.nasl - Type: ACT_ATTACK
2012-07-13 Name: The application hosted on the remote web server has a directory traversal vul...
File: groupwise_webaccess_userinterface_dir_trav.nasl - Type: ACT_ATTACK
2011-01-28 Name: The remote Windows host has an application that is affected by a buffer overf...
File: groupwise_ia_802_hp2.nasl - Type: ACT_GATHER_INFO
2010-11-23 Name: The remote host has an application that is susceptible to a directory travers...
File: groupwise_webaccess_802_hp1.nasl - Type: ACT_GATHER_INFO
2010-11-23 Name: The remote web server is susceptible to a directory traversal attack.
File: groupwise_webaccess_arbitrary_file_download.nasl - Type: ACT_ATTACK
2010-11-23 Name: The remote Windows host has an application that is affected by multiple vulne...
File: groupwise_ia_802_hp1.nasl - Type: ACT_GATHER_INFO
2010-11-23 Name: The remote web server is susceptible to a directory traversal attack.
File: groupwise_dva_arbitrary_file_download.nasl - Type: ACT_ATTACK
2009-06-01 Name: The SMTP server running on the remote Windows host has multiple buffer overfl...
File: groupwise_ia_multiple_overflows.nasl - Type: ACT_GATHER_INFO
2009-05-27 Name: The web application running on the remote host has a cross-site scripting vul...
File: groupwise_webaccess_userlang_xss.nasl - Type: ACT_ATTACK
2009-02-21 Name: The remote web server contains a script that is prone to a cross-site scripti...
File: groupwise_webaccess_userid_xss.nasl - Type: ACT_ATTACK
2007-07-26 Name: The remote Windows host contains an application that is affected by an inform...
File: groupwise_client_mitm.nasl - Type: ACT_GATHER_INFO
2007-04-23 Name: It is possible to execute code on the remote host.
File: groupwise_webaccess_overflow.nasl - Type: ACT_GATHER_INFO
2006-07-05 Name: The remote Windows host contains a mail client that may allow unauthorized ac...
File: groupwise_client_email_access.nasl - Type: ACT_GATHER_INFO