CVE-2011-2661
08.10.2011, 02:52
Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 8.0 before HP3 allow remote attackers to inject arbitrary web script or HTML via the (1) Directory.Item.name or (2) Directory.Item.displayName parameter.
| Vendor | Product | Version |
|---|---|---|
| novell | groupwise | 8.0 |
| novell | groupwise | 8.0:hp1 |
| novell | groupwise | 8.0:hp2 |
𝑥
= Vulnerable software versions