CVE-2001-1231Groupwise vulnerability

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
7.0%
top 8.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 14
Latest updateApr 30

Description

GroupWise 5.5 and 6 running in live remote or smart caching mode allows remote attackers to read arbitrary users' mailboxes by extracting usernames and passwords from sniffed network traffic, as addressed by the "Padlock" fix.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDnovell/groupwise5.5, 6.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-422c-v5pr-46mh: GroupWise 52022-04-30
CVEList
CVE-2001-1231: GroupWise 52002-06-25
CVE-2001-1231 — Novell Groupwise vulnerability | cvebase