vendor:
GroupWise
by:
Praveen Darshanam
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: GroupWise
Affected Version From: 6.5x
Affected Version To: 8
Patch Exists: YES
Related CWE: CVE-2009-0410
CPE: a:novell:groupwise
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=47270, https://www.infosecmatter.com/nessus-plugin-library/?id=45128, https://www.infosecmatter.com/nessus-plugin-library/?id=44867, https://www.infosecmatter.com/nessus-plugin-library/?id=44951, https://www.infosecmatter.com/nessus-plugin-library/?id=45010, https://www.infosecmatter.com/nessus-plugin-library/?id=44966, https://www.infosecmatter.com/nessus-plugin-library/?id=89674, https://www.infosecmatter.com/nessus-plugin-library/?id=44860, https://www.infosecmatter.com/nessus-plugin-library/?id=44964, https://www.infosecmatter.com/nessus-plugin-library/?id=51971
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2009
Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA)
Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote attackers to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow.
Mitigation:
Upgrade to the latest version of Novell GroupWise