PT-2011-1663 · Novell · Groupwise

Published

2011-01-31

·

Updated

2011-04-26

·

CVE-2010-4713

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Novell GroupWise versions prior to 8.02HP
Description The issue is related to an integer signedness error in the gwia.exe component of the GroupWise Internet Agent (GWIA). This error allows remote attackers to execute arbitrary code by manipulating a signed integer value in the Content-Type header.
Recommendations For versions prior to 8.02HP, update to version 8.02HP or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-4713

Affected Products

Groupwise