Novell Groupwise Client CVE-2012-0439 ActiveX Control Remote Code Execution Vulnerability
BID:57658
Info
Novell Groupwise Client CVE-2012-0439 ActiveX Control Remote Code Execution Vulnerability
| Bugtraq ID: | 57658 |
| Class: | Unknown |
| CVE: |
CVE-2012-0439 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 31 2013 12:00AM |
| Updated: | Apr 02 2013 03:57PM |
| Credit: | Andrea Micalizzi (rgod) via ZDI |
| Vulnerable: |
Novell GroupWise 8.02HP3 0 Novell GroupWise 8.0 Support Pack 2 0 Novell Groupwise 8.02 HP3 Novell Groupwise 8.02 HP2 Novell Groupwise 8.02 HP1 Novell Groupwise 8.02 Novell Groupwise 8.01x Novell Groupwise 8.0 SP2 Novell Groupwise 8.0 HP3 |
| Not Vulnerable: | |
Discussion
Novell Groupwise Client CVE-2012-0439 ActiveX Control Remote Code Execution Vulnerability
Novell Groupwise Client is prone to a remote code-execution vulnerability because it fails to sufficiently validate user-supplied data.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit attempts will result in a denial-of-service condition.
The following versions are vulnerable:
Versions prior to GroupWise 8.0.3 Hot Patch 2
Versions prior to GroupWise 2012 SP1 Hot Patch 1
Novell Groupwise Client is prone to a remote code-execution vulnerability because it fails to sufficiently validate user-supplied data.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application that uses the ActiveX control (typically Internet Explorer). Failed exploit attempts will result in a denial-of-service condition.
The following versions are vulnerable:
Versions prior to GroupWise 8.0.3 Hot Patch 2
Versions prior to GroupWise 2012 SP1 Hot Patch 1
Exploit / POC
Novell Groupwise Client CVE-2012-0439 ActiveX Control Remote Code Execution Vulnerability
The following metasploit exploit code is available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following metasploit exploit code is available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Novell Groupwise Client CVE-2012-0439 ActiveX Control Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.