First published: Mon Jun 04 2007(Updated: )
Novell GroupWise 7 before SP2 20070524, and GroupWise 6 before 6.5 post-SP6 20070522, allows remote attackers to obtain credentials via a man-in-the-middle attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus GroupWise | =6.5-sp5 | |
Micro Focus GroupWise | =7.0 | |
Micro Focus GroupWise | =6.5-sp1 | |
Micro Focus GroupWise | =7.0-sp1 | |
Micro Focus GroupWise | =6.5-sp6 | |
Micro Focus GroupWise | =6.5-sp4 | |
Micro Focus GroupWise | =6.5-sp3 | |
Micro Focus GroupWise | =6.5 | |
Micro Focus GroupWise | =6.5-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2513 is rated as a medium severity vulnerability due to the potential for credential theft via man-in-the-middle attacks.
To mitigate CVE-2007-2513, users should upgrade to GroupWise 7 SP2 or GroupWise 6.5 SP6 or later.
CVE-2007-2513 can be exploited through man-in-the-middle attacks, allowing attackers to intercept credentials.
CVE-2007-2513 affects Novell GroupWise versions 6.5 before SP6 and 7 before SP2.
If using an affected version of Novell GroupWise, you should ensure that your software is updated to a non-vulnerable version immediately.