CVE-2008-3501Cross-site Scripting in Groupwise

Severity
4.3MEDIUMNVD
EPSS
1.0%
top 22.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 6
Latest updateMay 2

Description

Cross-site scripting (XSS) vulnerability in the WebAccess simple interface in Novell Groupwise 7.0.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDnovell/groupwise7.0, 7.0.2, 7.0.3+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9v65-qh6p-rfjx: Cross-site scripting (XSS) vulnerability in the WebAccess simple interface in Novell Groupwise 72022-05-02
CVEList
CVE-2008-3501: Cross-site scripting (XSS) vulnerability in the WebAccess simple interface in Novell Groupwise 72008-08-06
CVE-2008-3501 — Cross-site Scripting in Groupwise | cvebase