|
|
|
Vulnerability Note VU#796956Novell GroupWise Messenger fails to properly handle HTTP POST requests.OverviewNovell GroupWise Messenger fails to properly handle HTTP POST requests. This vulnerability may allow a remote attacker to cause a denial of service condition.I. DescriptionNovell GroupWise Messenger fails to properly handle HTTP POST requests. This vulnerability may be triggered by sending a specially crafted HTTP POST request with a modified 'val' parameter to the server on port 8300/tcp.II. ImpactThis vulnerability may allow a remote attacker to cause a denial of service condition.III. SolutionApply an UpdateNovell has released updates for GroupWise Messenger versions 1.0.6 and 2.02.
References
This vulnerability was reported by iDefense Labs. iDefense credits CIRT.DK for discovering this vulnerability. This document was written by Katie Steiner.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||||||