The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement session management mechanisms, which allows remote attackers to gain access to user accounts via unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Groupwise | Novell | 7.0 (including) | 7.0 (including) |
Groupwise | Novell | 7.0.0-sp1 (including) | 7.0.0-sp1 (including) |
Groupwise | Novell | 7.0.0-sp2 (including) | 7.0.0-sp2 (including) |
Groupwise | Novell | 7.0.2 (including) | 7.0.2 (including) |
Groupwise | Novell | 7.0.3 (including) | 7.0.3 (including) |
Groupwise | Novell | 7.03-hp1a (including) | 7.03-hp1a (including) |
Groupwise | Novell | 7.03-hp2 (including) | 7.03-hp2 (including) |
Groupwise | Novell | 8.0 (including) | 8.0 (including) |
Groupwise | Novell | 8.0-hp1 (including) | 8.0-hp1 (including) |