usrmgr/userList.asp in Nokia Intellisync Mobile Suite 6.4.31.2, 6.6.0.107, and 6.6.2.2, possibly involving Novell Groupwise Mobile Server and Nokia Intellisync Wireless Email Express, allows remote malicious users to modify user account details and cause a denial of service (account deactivation) via the userid parameter in an update action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nokia intellisync mobile suite 6.6.0.107 |
||
nokia intellisync mobile suite 6.6.2.2 |
||
nokia intellisync wireless email express |
||
nokia groupwise mobile server |
||
nokia intellisync mobile suite 6.4.31.2 |