6.5
CVSSv2

CVE-2010-4717

Published: 31/01/2011 Updated: 16/02/2011
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise prior to 8.02HP allow remote malicious users to execute arbitrary code via a long (1) LIST or (2) LSUB command.

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise 6.5

novell groupwise 6.5.2

novell groupwise 6.5.3

novell groupwise 6.5.4

novell groupwise 7.0.1

novell groupwise 8.0

novell groupwise 8.0.1

novell groupwise

novell groupwise 5.2

novell groupwise 4.1a

novell groupwise 5.57e

novell groupwise 6.0.1

novell groupwise 6.0

novell groupwise 6.5.6

novell groupwise 7.0.2

novell groupwise 7.0.4

novell groupwise 5.0

novell groupwise 5.1

novell groupwise 5.5

novell groupwise 4.1

novell groupwise 6.5.7

novell groupwise 7.0

novell groupwise 7.0.3

Exploits

##################################################################################### Application: Novell Groupwise Internet Agent IMAP LIST LSUB Command Remote Code Execution Vulnerability Platforms: SLES 10 SP3 (GroupWise 802) Exploitation: Remote code execution CVE Number: Novell TID: 7007157 Author: Francis Provencher (Protek ...