The WebAccess component in Novell GroupWise 7.x before 7.03 HP3 and 8.x before 8.0 HP2 does not properly implement session management mechanisms, which allows remote attackers to gain access to user accounts via unspecified vectors.
                
            References
                    | Link | Resource | 
|---|---|
| http://secunia.com/advisories/35177 | Vendor Advisory | 
| http://www.novell.com/support/viewContent.do?externalId=7003266&sliceId=1 | Vendor Advisory | 
| http://www.securityfocus.com/bid/35066 | |
| http://www.vupen.com/english/advisories/2009/1393 | Vendor Advisory | 
| https://bugzilla.novell.com/show_bug.cgi?id=472979 | Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/50688 | |
| http://secunia.com/advisories/35177 | Vendor Advisory | 
| http://www.novell.com/support/viewContent.do?externalId=7003266&sliceId=1 | Vendor Advisory | 
| http://www.securityfocus.com/bid/35066 | |
| http://www.vupen.com/english/advisories/2009/1393 | Vendor Advisory | 
| https://bugzilla.novell.com/show_bug.cgi?id=472979 | Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/50688 | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2009-05-26 15:30
Updated : 2025-04-09 00:30
NVD link : CVE-2009-1634
Mitre link : CVE-2009-1634
CVE.ORG link : CVE-2009-1634
JSON object : View
Products Affected
                novell
- groupwise
CWE
                