Directory traversal vulnerability in Novell GroupWise 5.5 and 6.0 allows remote attackers to read arbitrary files via a request for /servlet/webacc?User.html= that contains ../ (dot dot) sequences and a null character.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Groupwise | Novell | 5.5 (including) | 5.5 (including) |
Groupwise | Novell | 6.0 (including) | 6.0 (including) |