|
|
Family: Windows --> Category: infos
GroupWise Windows Client API Unauthorized Email Access Vulnerability Vulnerability Scan
Vulnerability Scan Summary Check the version of GroupWise client
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote Windows host contains a mail client that may allow
unauthorized access to email messages.
Description :
The remote host is running GroupWise, an enterprise-class
collaboration application from Novell.
The version of GroupWise installed on the remote host contains a flaw
in the client API that may allow a user to bypass security controls
and gain access to non-authorized email within the same authenticated
post office.
See also :
http://www.securityfocus.com/advisories/10778
Solution :
Upgrade to GroupWise 6.5 SP6 Update 1 / 7 SP1 or later.
Threat Level:
Low / CVSS Base Score : 2.3
(AV:R/AC:L/Au:NR/C:P/I:N/A:N/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|