Vulnerability Details CVE-2009-0410
Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) in Novell GroupWise 6.5x, 7.0, 7.01, 7.02, 7.03, 7.03HP1a, and 8.0 allows remote attackers to execute arbitrary code via a long e-mail address in a malformed RCPT command, leading to a buffer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.192
EPSS Ranking 95.0%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2009-0410
-
cpe:2.3:a:novell:groupwise:6.5
-
cpe:2.3:a:novell:groupwise:7.0
-
cpe:2.3:a:novell:groupwise:7.01
-
cpe:2.3:a:novell:groupwise:7.02x
-
cpe:2.3:a:novell:groupwise:7.03
-
cpe:2.3:a:novell:groupwise:8.0