Security Advisory

CVE-2001-1458

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-04-21 04:00:00
Last updated 2024-08-08 04:58:11
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in Novell GroupWise 5.5 and 6.0 allows remote attackers to read arbitrary files via a request for /servlet/webacc?User.html= that contains "../" (dot dot) sequences and a null character.