← Back

CVE-2012-0271

nvd nist
Published: Sep 19, 2012Modified: Apr 29, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before SP1 might allow remote attackers to execute arbitrary code via a crafted request that triggers a heap-based buffer overflow, as demonstrated by a request with -1 in the Content-Length HTTP header.

Affected (43)

Products: Novell: Groupwise
1 product
Groupwise
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Novell
Version 8.01
Version 8.01 hp
Version 8.02
Version 8.02 hp1
Version 8.02 hp2
Version 8.02 hp3
Version 8.03
Version 8.0
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2012
Configuration C
34 vulnerable
Vulnerable SoftwareAffected Versions
Novell
Version 5.2
Version 5.57e
Version 5.5
Version 6.0.1 sp1
Version 6.0
Version 6.5.2
Version 6.5.3
Version 6.5.4
Version 6.5.6
Version 6.5.7
Version 6.5
Version 6.5 sp1
Version 6.5 sp2
Version 6.5 sp3
Version 6.5 sp4
Version 6.5 sp5
Version 6.5 sp6
Version 7.0.3 hp4
Version 7.0.3 hp5
Version 7.0.4
Version 7.0.4 ftf
Version 7.01
Version 7.01 ir1
Version 7.02
Version 7.02 hp1
Version 7.02 hp1a
Version 7.02 hp2
Version 7.02 hp2r1
Version 7.03
Version 7.03 hp2
Version 7.03 hp3
Version 7.03 hp3+ftf
Version 7.03 hp
Version 7.0

Related CWEs

References (8)

Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.