The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement session management mechanisms, which allows remote attackers to gain access to user accounts via unspecified vectors.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2009/1393 | vdb entry vendor advisory |
http://secunia.com/advisories/35177 | third party advisory vendor advisory |
http://www.novell.com/support/viewContent.do?externalId=7003266&sliceId=1 | vendor advisory |
http://www.securityfocus.com/bid/35066 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/50688 | vdb entry |
https://bugzilla.novell.com/show_bug.cgi?id=472979 | vendor advisory |