CVE-2013-1087

Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML via the body of an e-mail message.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
VendorProductVersion
novellgroupwise
𝑥
≤ 8.03
novellgroupwise
6.5
novellgroupwise
6.5:sp1
novellgroupwise
6.5:sp2
novellgroupwise
6.5:sp3
novellgroupwise
6.5:sp4
novellgroupwise
6.5:sp5
novellgroupwise
6.5:sp6
novellgroupwise
6.5.2
novellgroupwise
6.5.3
novellgroupwise
6.5.4
novellgroupwise
6.5.6
novellgroupwise
6.5.7
novellgroupwise
7.0
novellgroupwise
7.0.3:hp4
novellgroupwise
7.0.3:hp5
novellgroupwise
7.0.4
novellgroupwise
7.0.4:ftf
novellgroupwise
7.01
novellgroupwise
7.01:ir1
novellgroupwise
7.02
novellgroupwise
7.02:hp1
novellgroupwise
7.02:hp1a
novellgroupwise
7.02:hp2
novellgroupwise
7.02:hp2r1
novellgroupwise
7.03
novellgroupwise
7.03:hp
novellgroupwise
7.03:hp2
novellgroupwise
7.03:hp3
novellgroupwise
7.03:hp3\+ftf
novellgroupwise
8.0
novellgroupwise
8.00:hp1
novellgroupwise
8.00:hp2
novellgroupwise
8.00:hp3
novellgroupwise
8.01
novellgroupwise
8.01:hp
novellgroupwise
8.02
novellgroupwise
8.02:hp1
novellgroupwise
8.02:hp2
novellgroupwise
8.02:hp3
novellgroupwise
8.03
novellgroupwise
8.03:hp1
novellgroupwise
8.03:hp2
𝑥
= Vulnerable software versions