PT-2008-2921 · Microsoft+1 · Windows+1
Publicado
2008-03-18
·
Atualizado
2017-08-08
·
CVE-2008-1330
CVSS v2.0
3.5
Baixa
| Vetor | AV:N/AC:M/Au:S/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Novell GroupWise versions 6.5 before SP6 Update 3
Novell GroupWise versions 7.0 through 7.0 before SP3
Description
The issue allows remote authenticated users to access non-shared stored e-mail messages of another user who has shared at least one folder with the attacker. This occurs due to an unspecified vulnerability in the Windows client API.
Recommendations
For Novell GroupWise versions 6.5 before SP6 Update 3, update to SP6 Update 3 or later.
For Novell GroupWise versions 7.0 through 7.0 before SP3, update to SP3 or later.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Novell Groupwise
Windows