9.3
CVSSv2

CVE-2013-1085

Published: 29/03/2013 Updated: 29/03/2013
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the nim: protocol handler in Novell GroupWise Messenger 2.04 and previous versions, and Novell Messenger 2.1.x and 2.2.x prior to 2.2.2, allows remote malicious users to execute arbitrary code via an import command containing a long string in the filename parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

novell groupwise messenger

novell groupwise messenger 2.0.2

novell groupwise messenger 2.0

novell groupwise messenger 1.0.6

novell messenger

novell messenger 2.2.0