Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in Novell GroupWise WebAccess 6.5 and 7 before 20060727 allows remote attackers to inject arbitrary web script or HTML via an encoded SCRIPT element in an e-mail message with the UTF-7 character set, as demonstrated by the "+ADw-SCRIPT+AD4-" sequence.
Software | From | Fixed in |
---|---|---|
novell / groupwise_webaccess | 7 | 7.x |
novell / groupwise_webaccess | 6.5 | 6.5.x |
novell / groupwise_webaccess | 6.5-sp1 | 6.5-sp1.x |
novell / groupwise_webaccess | 6.5-sp4 | 6.5-sp4.x |
novell / groupwise_webaccess | 6.5-sp2 | 6.5-sp2.x |
novell / groupwise_webaccess | 6.5-sp3 | 6.5-sp3.x |