APP: Novell Groupwise Messenger Server Process Memory Information Disclosure

This signature detects attempts to exploit a known vulnerability against Novell Messenger. A successful attack can lead to information disclosure. Attackers can exploit this issue to obtain sensitive information that may lead to further attacks.

Extended Description

Novell Messenger Server Process is prone to an information-disclosure vulnerability that lets attackers retrieve contents of arbitrary memory locations. An attacker can exploit this vulnerability to retrieve certain files from the vulnerable computer in the context of the webserver process. Information obtained may aid in further attacks.

Affected Products

Novell groupwise_messenger

References

BugTraq: 50443

CVE: CVE-2011-3179

Short Name
APP:NOVELL:GWMGR-INFODISC
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
CVE-2011-3179 Disclosure Groupwise Information Memory Messenger Novell Process Server bid:50443
Release Date
01/07/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Novell

CVSS Score

5.0

Found a potential security threat?