Vulnerabilities > Novell > Groupwise Messenger > Medium

DATE CVE VULNERABILITY TITLE RISK
2011-12-08 CVE-2011-3179 Information Exposure vulnerability in Novell Groupwise Messenger and Messenger
The server process in Novell Messenger 2.1 and 2.2.x before 2.2.1, and Novell GroupWise Messenger 2.04 and earlier, allows remote attackers to read from arbitrary memory locations via a crafted command.
network
low complexity
novell CWE-200
5.0
2008-06-13 CVE-2008-2704 Improper Input Validation vulnerability in Novell Groupwise Messenger
Novell GroupWise Messenger (GWIM) before 2.0.3 Hot Patch 1 allows remote attackers to cause a denial of service (crash) via a long user ID, possibly involving a popup alert.
network
low complexity
novell CWE-20
5.0
2006-10-05 CVE-2006-4511 Denial of Service vulnerability in Novell GroupWise Messenger Server Nmma.EXE
Messenger Agents (nmma.exe) in Novell GroupWise 2.0.2 and 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted HTTP POST request to TCP port 8300 with a modified val parameter, which triggers a null dereference related to "zero-size strings in blowfish routines."
network
low complexity
novell
5.0