7.5
CVSSv2

CVE-2009-1634

Published: 26/05/2009 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The WebAccess component in Novell GroupWise 7.x prior to 7.03 HP3 and 8.x prior to 8.0 HP2 does not properly implement session management mechanisms, which allows remote malicious users to gain access to user accounts via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise 7.0

novell groupwise 7.0.3

novell groupwise 7.03

novell groupwise 8.0

novell groupwise 7.0.0

novell groupwise 7.0.2

Exploits

source: wwwsecurityfocuscom/bid/35066/info Novell GroupWise WebAccess is prone to multiple security vulnerabilities An attacker may leverage these issues to bypass certain security restrictions or conduct cross-site scripting attacks Note that some of the issues may be related to BID 35061 We will update this BID as more information ...