9.3
CVSSv2

CVE-2012-0439

Published: 24/02/2013 Updated: 25/02/2013
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 prior to 8.0.3 HP2 and 2012 before SP1 HP1 allows remote malicious users to execute arbitrary code via (1) a pointer argument to the SetEngine method or (2) an XPItem pointer argument to an unspecified method.

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise 8.00

novell groupwise 8.0

novell groupwise 8.02

novell groupwise 8.03

novell groupwise 8.01

novell groupwise 2012

Exploits

## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = NormalRanking inc ...