APP: Novell GroupWise WebAccess HTTP Basic Authentication Buffer Overflow

This signature detects attempts to exploit a known vulnerability in Novell Groupwise WebAccess. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.

Extended Description

Novell Groupwise WebAccess is prone to a remote buffer-overflow vulnerability because the application fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer. An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.

Affected Products

Novell groupwise

Short Name
APP:NOVELL:GROUPWISE-WA
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Authentication Basic Buffer CVE-2007-1350 CVE-2007-2171 GroupWise HTTP Novell Overflow WebAccess bid:23556
Release Date
05/09/2007
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

srx-branch-12.3

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx-12.3

vmx-19.3

srx-12.3

Sigpack Version
3728
Port
TCP/89,7205,7211
False Positive
Unknown
Vendors

Novell

CVSS Score

6.8

10.0

Found a potential security threat?