CVE-2005-1676: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Groove Mobile Workspace in Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 allow remote attackers to inject arbitrary web script or HTML via the (1) picture columns embedded within SharePoint lists or (2) drop-down menus in a SharePoint list.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1676?
CVE-2005-1676 is considered a moderate severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2005-1676?
To fix CVE-2005-1676, update Groove Virtual Office or Groove Workspace to a version beyond the identified affected builds.
What types of attacks can exploit CVE-2005-1676?
CVE-2005-1676 can be exploited for cross-site scripting attacks that allow attackers to inject arbitrary web scripts or HTML.
Which software versions are affected by CVE-2005-1676?
CVE-2005-1676 affects Groove Virtual Office versions before 3.1 build 2338 and Groove Workspace versions before 2.5n build 1871.
Who are the potential attackers for CVE-2005-1676?
Remote attackers with malicious intent can exploit CVE-2005-1676 to perform cross-site scripting attacks.