First published: Mon Jul 15 2013(Updated: )
Cross-site scripting (XSS) vulnerability in the client in Novell GroupWise through 8.0.3 HP3, and 2012 through SP2, on Windows allows user-assisted remote attackers to inject arbitrary web script or HTML via the body of an e-mail message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus GroupWise | <=8.03 | |
Micro Focus GroupWise | =6.5 | |
Micro Focus GroupWise | =6.5-sp1 | |
Micro Focus GroupWise | =6.5-sp2 | |
Micro Focus GroupWise | =6.5-sp3 | |
Micro Focus GroupWise | =6.5-sp4 | |
Micro Focus GroupWise | =6.5-sp5 | |
Micro Focus GroupWise | =6.5-sp6 | |
Micro Focus GroupWise | =6.5.2 | |
Micro Focus GroupWise | =6.5.3 | |
Micro Focus GroupWise | =6.5.4 | |
Micro Focus GroupWise | =6.5.6 | |
Micro Focus GroupWise | =6.5.7 | |
Micro Focus GroupWise | =7.0 | |
Micro Focus GroupWise | =7.0.3-hp4 | |
Micro Focus GroupWise | =7.0.3-hp5 | |
Micro Focus GroupWise | =7.0.4 | |
Micro Focus GroupWise | =7.0.4-ftf | |
Micro Focus GroupWise | =7.01 | |
Micro Focus GroupWise | =7.01-ir1 | |
Micro Focus GroupWise | =7.02 | |
Micro Focus GroupWise | =7.02-hp1 | |
Micro Focus GroupWise | =7.02-hp1a | |
Micro Focus GroupWise | =7.02-hp2 | |
Micro Focus GroupWise | =7.02-hp2r1 | |
Micro Focus GroupWise | =7.03 | |
Micro Focus GroupWise | =7.03-hp | |
Micro Focus GroupWise | =7.03-hp2 | |
Micro Focus GroupWise | =7.03-hp3 | |
Micro Focus GroupWise | =7.03-hp3\+ftf | |
Micro Focus GroupWise | =8.0 | |
Micro Focus GroupWise | =8.00-hp1 | |
Micro Focus GroupWise | =8.00-hp2 | |
Micro Focus GroupWise | =8.00-hp3 | |
Micro Focus GroupWise | =8.01 | |
Micro Focus GroupWise | =8.01-hp | |
Micro Focus GroupWise | =8.02 | |
Micro Focus GroupWise | =8.02-hp1 | |
Micro Focus GroupWise | =8.02-hp2 | |
Micro Focus GroupWise | =8.02-hp3 | |
Micro Focus GroupWise | =8.03 | |
Micro Focus GroupWise | =8.03-hp1 | |
Micro Focus GroupWise | =8.03-hp2 | |
Micro Focus GroupWise | =2012 | |
Micro Focus GroupWise | =2012-sp1 | |
Micro Focus GroupWise | =2012-sp1_hp1 | |
Micro Focus GroupWise | =2012-sp2 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1087 is considered a medium severity vulnerability due to its potential for exploitation through user-assisted attacks.
To fix CVE-2013-1087, ensure that you update to the latest version of Novell GroupWise that addresses this vulnerability.
CVE-2013-1087 affects Novell GroupWise versions up to 8.0.3 HP3 and all versions from 6.5 through 2012 SP2.
CVE-2013-1087 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Yes, CVE-2013-1087 requires user-assisted actions to exploit the vulnerability, typically through malicious email content.