Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014 before Support Pack 2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.novell.com/support/kb/doc.php?id=7016653 - Vendor Advisory | |
References | () http://www.securitytracker.com/id/1032978 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=909584 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=909586 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=909587 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=909588 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=909590 - | |
References | () https://bugzilla.novell.com/show_bug.cgi?id=930467 - |
Information
Published : 2015-07-22 14:59
Updated : 2024-11-21 02:02
NVD link : CVE-2014-0611
Mitre link : CVE-2014-0611
CVE.ORG link : CVE-2014-0611
JSON object : View
Products Affected
novell
- groupwise
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')