CVE-2013-1087: XSS
Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML via the body of an e-mail message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1087?
CVE-2013-1087 is considered a medium severity vulnerability due to its potential for exploitation through user-assisted attacks.
How do I fix CVE-2013-1087?
To fix CVE-2013-1087, ensure that you update to the latest version of Novell GroupWise that addresses this vulnerability.
Which versions of Novell GroupWise are affected by CVE-2013-1087?
CVE-2013-1087 affects Novell GroupWise versions up to 8.0.3 HP3 and all versions from 6.5 through 2012 SP2.
What type of vulnerability is CVE-2013-1087?
CVE-2013-1087 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Is user action required for CVE-2013-1087 to be exploited?
Yes, CVE-2013-1087 requires user-assisted actions to exploit the vulnerability, typically through malicious email content.