CVE Vulnerabilities

CVE-2005-0296

Published: Jan 17, 2005 | Modified: May 17, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

NOTE: this issue has been disputed by the vendor. The error module in Novell GroupWise WebAccess allows remote attackers who have not authenticated to read potentially sensitive information, such as the version, via an incorrect login and a modified (1) error or (2) modify parameter that returns template files or the about information page. NOTE: the vendor has disputed this issue

Affected Software

Name Vendor Start Version End Version
Groupwise Novell 6.0 (including) 6.0 (including)
Groupwise Novell 6.0-sp1 (including) 6.0-sp1 (including)
Groupwise Novell 6.0-sp2 (including) 6.0-sp2 (including)
Groupwise Novell 6.0-sp3 (including) 6.0-sp3 (including)
Groupwise Novell 6.0-sp4 (including) 6.0-sp4 (including)
Groupwise Novell 6.5 (including) 6.5 (including)
Groupwise Novell 6.5-sp1 (including) 6.5-sp1 (including)
Groupwise Novell 6.5-sp2 (including) 6.5-sp2 (including)
Groupwise_webaccess Novell 6.0-sp4 (including) 6.0-sp4 (including)
Groupwise_webaccess Novell 6.5 (including) 6.5 (including)
Groupwise_webaccess Novell 6.5-sp1 (including) 6.5-sp1 (including)
Groupwise_webaccess Novell 6.5-sp2 (including) 6.5-sp2 (including)

References