CVE-2005-1678: Low severity groove virtual office vulnerability
Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 does not properly display file extensions on attached or embedded files in a compound document, which may allow remote attackers to trick users into executing malicious code.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1678?
CVE-2005-1678 is considered a moderate severity vulnerability due to the potential for remote code execution through incorrect file extension display.
How do I fix CVE-2005-1678?
To fix CVE-2005-1678, update your Groove Virtual Office to version 3.1 build 2339 or later and Groove Workspace to version 2.5n build 1872 or later.
What products are affected by CVE-2005-1678?
CVE-2005-1678 affects Groove Virtual Office versions before 3.1 build 2338 and Groove Workspace versions before 2.5n build 1871.
What kind of attacks can exploit CVE-2005-1678?
CVE-2005-1678 can be exploited by remote attackers to trick users into executing malicious code through misleading file extensions.
Is CVE-2005-1678 still a concern in 2023?
Given the age of CVE-2005-1678, it may not be a widespread concern, but users of the affected software should still consider any risks associated with using outdated versions.