10
CVSSv2

CVE-2010-4714

Published: 31/01/2011 Updated: 26/04/2011
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in Novell GroupWise prior to 8.02HP allow remote malicious users to execute arbitrary code via a long HTTP Host header to (1) gwpoa.exe in the Post Office Agent, (2) gwmta.exe in the Message Transfer Agent, (3) gwia.exe in the Internet Agent, (4) the WebAccess Agent, or (5) the Monitor Agent.

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise 4.1

novell groupwise 5.0

novell groupwise 6.0

novell groupwise 6.5

novell groupwise 6.5.7

novell groupwise 7.0.3

novell groupwise 7.0.1

novell groupwise 5.1

novell groupwise 5.5

novell groupwise 5.57e

novell groupwise 7.0

novell groupwise 6.5.2

novell groupwise 6.5.3

novell groupwise 6.5.4

novell groupwise 6.5.6

novell groupwise 8.0.1

novell groupwise

novell groupwise 5.2

novell groupwise 4.1a

novell groupwise 6.0.1

novell groupwise 7.0.2

novell groupwise 7.0.4

novell groupwise 8.0