CVE-2010-4712

Multiple stack-based buffer overflows in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a Content-Type header containing (1) multiple items separated by ; (semicolon) characters or (2) crafted string data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
VendorProductVersion
novellgroupwise
𝑥
≤ 8.0.2
novellgroupwise
4.1
novellgroupwise
4.1a:a
novellgroupwise
5.0
novellgroupwise
5.1
novellgroupwise
5.2
novellgroupwise
5.5
novellgroupwise
5.5
novellgroupwise
5.57e:e
novellgroupwise
6.0
novellgroupwise
6.0:sp1
novellgroupwise
6.0:sp5
novellgroupwise
6.0.1:sp1
novellgroupwise
6.5
novellgroupwise
6.5:sp1
novellgroupwise
6.5:sp2
novellgroupwise
6.5:sp3
novellgroupwise
6.5:sp4
novellgroupwise
6.5:sp5
novellgroupwise
6.5:sp6
novellgroupwise
6.5.2
novellgroupwise
6.5.3
novellgroupwise
6.5.4
novellgroupwise
6.5.6
novellgroupwise
6.5.7
novellgroupwise
7.0
novellgroupwise
7.0.1
novellgroupwise
7.0.2
novellgroupwise
7.0.3
novellgroupwise
7.0.4
novellgroupwise
8.0
novellgroupwise
8.0.1
𝑥
= Vulnerable software versions