First published: Sun Dec 19 1999(Updated: )
Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus GroupWise | =5.2 | |
Micro Focus GroupWise | =5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1006 is considered a moderate severity vulnerability as it allows remote attackers to gain insight into the internal structure of the web server.
To remediate CVE-1999-1006, ensure you upgrade to a patched version of Novell GroupWise that addresses this vulnerability.
The risks include unauthorized exposure of web server paths which may lead to further attacks on the system.
CVE-1999-1006 affects Novell GroupWise versions 5.2 and 5.5.
While CVE-1999-1006 is an older vulnerability, organizations still using affected versions of GroupWise are at risk and should consider immediate remediation.