VulnerabilityModified
CVE-2010-4717
Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long (1) LIST or (2) LSUB command.
MEDIUM 6.5EPSS 9.93%
Does this matter?
Lower severity and a low EPSS score (9.93%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long (1) LIST or (2) LSUB command.
- CVSS 2.0
- 6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
- EPSS
- 9.93% probability · 95th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- novell/groupwise
- Source
- cve@mitre.org
References
- http://www.facebook.com/note.php?note_id=477865030928
- http://www.novell.com/support/viewContent.do?externalId=7007157&sliceId=1Vendor Advisory
- http://www.protekresearchlab.com/index.php?option=com_content&view=article&id=19&Itemid=19Exploit
- https://bugzilla.novell.com/show_bug.cgi?id=635294
- http://www.facebook.com/note.php?note_id=477865030928
- http://www.novell.com/support/viewContent.do?externalId=7007157&sliceId=1Vendor Advisory
- http://www.protekresearchlab.com/index.php?option=com_content&view=article&id=19&Itemid=19Exploit
- https://bugzilla.novell.com/show_bug.cgi?id=635294
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.