PT-2008-2921 · Microsoft+1 · Windows+1
Published
2008-03-18
·
Updated
2017-08-08
·
CVE-2008-1330
CVSS v2.0
3.5
Low
| Vector | AV:N/AC:M/Au:S/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Novell GroupWise versions 6.5 before SP6 Update 3
Novell GroupWise versions 7.0 through 7.0 before SP3
Description
The issue allows remote authenticated users to access non-shared stored e-mail messages of another user who has shared at least one folder with the attacker. This occurs due to an unspecified vulnerability in the Windows client API.
Recommendations
For Novell GroupWise versions 6.5 before SP6 Update 3, update to SP6 Update 3 or later.
For Novell GroupWise versions 7.0 through 7.0 before SP3, update to SP3 or later.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Novell Groupwise
Windows