First published: Fri Dec 31 2004(Updated: )
Unknown vulnerability in Novell GroupWise and GroupWise WebAccess 6.0 through 6.5, when running with Apache Web Server 1.3 for NetWare where Apache is loaded using GWAPACHE.CONF, allows remote attackers to read directories and files on the server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell GroupWise | =6.0 | |
Novell GroupWise | =6.0-sp1 | |
Novell GroupWise | =6.0-sp2 | |
Novell GroupWise | =6.0-sp3 | |
Novell GroupWise | =6.0-sp4 | |
Novell GroupWise | =6.5 | |
Novell GroupWise | =6.5-sp1 | |
Novell GroupWise | =6.5-sp2 | |
Novell NetWare FTP Server | =6.0 | |
Novell GroupWise | =6.0 | |
Novell GroupWise | =6.0-sp4 | |
Novell GroupWise | =6.0-sp2 | |
Novell GroupWise | =6.5-sp1 | |
Novell GroupWise | =6.0-sp1 | |
Novell GroupWise | =6.0-sp3 | |
Novell GroupWise | =6.5 | |
Novell GroupWise | =6.5-sp2 | |
Novell NetWare FTP Server | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2336 has a medium severity rating due to the risk of remote attackers gaining unauthorized access to files and directories.
To fix CVE-2004-2336, upgrade to a non-vulnerable version of Novell GroupWise or apply any official patches provided by Novell.
CVE-2004-2336 affects Novell GroupWise versions 6.0 through 6.5 when running with Apache Web Server 1.3.
Yes, CVE-2004-2336 can be exploited remotely by attackers accessing the server over the network.
CVE-2004-2336 can lead to unauthorized access to sensitive files and directories, potentially compromising data integrity and confidentiality.