10
CVSSv2

CVE-2009-0410

Published: 03/02/2009 Updated: 11/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote malicious users to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise 6.5

novell groupwise 7.02x

novell groupwise 7.03

novell groupwise 8.0

novell groupwise 7.0

novell groupwise 7.01

Exploits

#!usr/bin/perl -w ####################################################################################### ###############################QUICK AND DIRTY EXPLOIT################################# ####################################################################################### # Off-by-one error in the SMTP daemon in GroupWise Internet Agent ...
Novell GroupWise versions 80 and below malformed RCPT command off-by-one exploit Affects versions 65x, 70, 701, 702, 703, 703HP1a, and 80 ...