Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in WebAccess in Novell GroupWise before 8.03 allows remote attackers to read arbitrary files via the User.interface parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell GroupWise WebAccess “User.interface”文件泄露漏洞
Vulnerability Description
Novell GroupWise是美国Novell公司的一套协作通讯系统。该系统提供了电子邮件、日程安排、即时通讯、任务管理、文档管理以及联系人管理等协作通讯服务。 Novell GroupWise 8.03之前版本中存在漏洞,该漏洞源于‘User.interface’参数到WebAccess接口的输入在用于读取文件之前未经正确验证。攻击者可利用该漏洞通过目录遍历序列,泄露在WebAccess目录结构下的文件内容。
CVSS Information
N/A
Vulnerability Type
N/A