PT-2005-1374 · Novell · Novell Groupwise Webaccess

Marc Ruef

·

Published

2005-01-17

·

Updated

2024-08-07

·

CVE-2005-0296

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Novell GroupWise WebAccess (affected versions not specified)
Description The error module in Novell GroupWise WebAccess allows remote attackers who have not authenticated to read potentially sensitive information, such as the version, via an incorrect login and a modified error or modify parameter that returns template files or the "about" information page.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2005-0296

Affected Products

Novell Groupwise Webaccess