Groove Virtual Office prior to 3.1 build 2338, prior to 3.1a build 2364, and Groove Workspace prior to 2.5n build 1871 does not properly display file extensions on attached or embedded files in a compound document, which may allow remote malicious users to trick users into executing malicious code.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
groove groove workspace |
||
groove virtual office |