about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities


Title Novell GroupWise WebAccess Multiple Cross Site Scripting Vulnerabilities
Published 2008-01-31-12:00AM
Updated 2008-02-04-09:06PM
Class Input Validation Error
CVE   CVE-2006-4220
Remote  Yes
Local  No
Credit  Frederic Loudet and Brian Martin discovered these vulnerabilities.
Vulnerable  Novell Groupwise 7.0
Novell Groupwise 6.5.7
Novell Groupwise 7.0.0 SP2
Novell Groupwise 7.0.0 SP1
Novell Groupwise 5.57e
Novell Netware 5.0
Novell Netware 4.11
Not Vulnerable  Novell Groupwise 7.0.0 SP3
Code  To exploit these issues, an attacker must entice an unsuspecting victim into following a malicious URI.The following proof-of-concept URIs are available:http://www.example.com/servlet/webacc?Error=[XSS]
http://www.example.com/servlet/webacc?User.html=[XSS]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 22:59:39 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo travianwik vBulletin, Chatbox ha anal sexy www.teenss Www youtab re.sx wwwmeenase www.Cusat. Easy MP3 C man womanf road php-nuke 2 Easy MP3 C www.okley. new animalsex. son and mo xblist Fuckingsex Foot boll N73 webexone Video porn smal girls clotheless mambo Remo dropbear s 1.3.1 Hourse sex CMS is Fre smal girls 524 news for c CMS is Fre SMU bugil www.zoo se WWW.hotsex GOM Www.sex200 zyxel Pres NAKEDGIRLS www//india /board/kbo Invision P Free Porn SSC Result http://www t694t