Vulnerability Details CVE-2013-1085
Stack-based buffer overflow in the nim: protocol handler in Novell GroupWise Messenger 2.04 and earlier, and Novell Messenger 2.1.x and 2.2.x before 2.2.2, allows remote attackers to execute arbitrary code via an import command containing a long string in the filename parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.269
EPSS Ranking 96.1%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2013-1085
-
cpe:2.3:a:novell:groupwise_messenger:-
-
cpe:2.3:a:novell:groupwise_messenger:1.0.6
-
cpe:2.3:a:novell:groupwise_messenger:2.0
-
cpe:2.3:a:novell:groupwise_messenger:2.0.2
-
cpe:2.3:a:novell:messenger:*
-
cpe:2.3:a:novell:messenger:2.2.0