Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
novell groupwise 8.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2010-2779
Cross-site scripting (XSS) vulnerability in WebAccess in Novell GroupWise 8.x prior to 8.0 SP2 allows remote malicious users to inject arbitrary web script or HTML via a crafted message, related to "replies."
Novell Groupwise 8.0
NA
CVE-2010-4326
Multiple buffer overflows in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise prior to 8.02HP allow remote malicious users to execute arbitrary code via variables in a VCALENDAR message, as demonstrated by a long (1) REQUEST-STATUS, (2) TZNAME, (3) COMMENT, or (4...
Novell Groupwise 5.1
Novell Groupwise 5.5
Novell Groupwise 6.5
Novell Groupwise 6.5.2
Novell Groupwise 8.0
Novell Groupwise 8.0.1
Novell Groupwise 4.1a
Novell Groupwise 5.0
Novell Groupwise 6.0
Novell Groupwise 7.0.4
Novell Groupwise 7.0.1
Novell Groupwise 5.57e
Novell Groupwise 6.5.3
Novell Groupwise 6.5.4
Novell Groupwise 6.5.6
Novell Groupwise 7.0
Novell Groupwise
Novell Groupwise 5.2
Novell Groupwise 4.1
Novell Groupwise 6.0.1
Novell Groupwise 6.5.7
Novell Groupwise 7.0.2
NA
CVE-2010-4325
Buffer overflow in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise prior to 8.02HP2 allows remote malicious users to execute arbitrary code via a crafted TZID variable in a VCALENDAR message.
Novell Groupwise 4.1
Novell Groupwise 4.1a
Novell Groupwise 6.0.1
Novell Groupwise 6.0
Novell Groupwise 6.5.7
Novell Groupwise 6.5
Novell Groupwise 7.0.3
Novell Groupwise 7.0.4
Novell Groupwise 5.2
Novell Groupwise 5.57e
Novell Groupwise 6.5.4
Novell Groupwise 6.5.6
Novell Groupwise 7.0
Novell Groupwise 7.0.2
Novell Groupwise 5.5
Novell Groupwise 6.5.2
Novell Groupwise 6.5.3
Novell Groupwise 8.0.1
Novell Groupwise
Novell Groupwise 5.0
Novell Groupwise 5.1
Novell Groupwise 7.0.1
NA
CVE-2009-4662
Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 7.0 prior to 7.03 HP4 and 8.0 prior to 8.0 SP1 allows remote malicious users to inject arbitrary web script or HTML via the User.Theme.index parameter.
Novell Groupwise 7.0
Novell Groupwise 7.03
Novell Groupwise 7.01
Novell Groupwise 8.0
NA
CVE-2009-1634
The WebAccess component in Novell GroupWise 7.x prior to 7.03 HP3 and 8.x prior to 8.0 HP2 does not properly implement session management mechanisms, which allows remote malicious users to gain access to user accounts via unspecified vectors.
Novell Groupwise 7.0
Novell Groupwise 7.0.3
Novell Groupwise 7.03
Novell Groupwise 8.0
Novell Groupwise 7.0.0
Novell Groupwise 7.0.2
1 EDB exploit
NA
CVE-2009-1636
Multiple buffer overflows in the Internet Agent (aka GWIA) component in Novell GroupWise 7.x prior to 7.03 HP3 and 8.x prior to 8.0 HP2 allow remote malicious users to execute arbitrary code via (1) a crafted e-mail address in an SMTP session or (2) an SMTP command.
Novell Groupwise 7.0
Novell Groupwise 7.0.2
Novell Groupwise 7.03
Novell Groupwise 7.01
Novell Groupwise 7.0.0
Novell Groupwise 7.0.3
Novell Groupwise 8.0
NA
CVE-2009-1635
Multiple cross-site scripting (XSS) vulnerabilities in the WebAccess component in Novell GroupWise 7.x prior to 7.03 HP3 and 8.x prior to 8.0 HP2 allow remote malicious users to inject arbitrary web script or HTML via (1) the User.lang parameter to the login page (aka gw/webacc),...
Novell Groupwise 7.0
Novell Groupwise 8.0
Novell Groupwise 7.01
Novell Groupwise 7.0.2
Novell Groupwise 7.0.3
Novell Groupwise 7.03
Novell Groupwise 7.0.0
Novell Groupwise 7.02x
NA
CVE-2009-0274
Unspecified vulnerability in WebAccess in Novell GroupWise 6.5, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 might allow remote malicious users to obtain sensitive information via a crafted URL, related to conversion of POST requests to GET requests.
Novell Groupwise 7.03
Novell Groupwise 8.0
Novell Groupwise 7.0
Novell Groupwise 7.02x
Novell Groupwise 6.5
Novell Groupwise 7.01
NA
CVE-2009-0410
Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote malicious users to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow.
Novell Groupwise 6.5
Novell Groupwise 7.02x
Novell Groupwise 7.03
Novell Groupwise 8.0
Novell Groupwise 7.0
Novell Groupwise 7.01
1 EDB exploit
NA
CVE-2009-0272
Cross-site request forgery (CSRF) vulnerability in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allows remote malicious users to insert e-mail forwarding rules, and modify unspecified other configuration settings, as arbitrary users via unknown vecto...
Novell Groupwise 6.5
Novell Groupwise 7.02x
Novell Groupwise 8.0
Novell Groupwise 7.0
Novell Groupwise 7.01
Novell Groupwise 7.03
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »