6.4

CVE-2005-2176

Exploit

Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.

Data is provided by the National Vulnerability Database (NVD)
NovellNetmail Version3.0.1
NovellNetmail Version3.0.3a Updatea
NovellNetmail Version3.0.3a Updateb
NovellNetmail Version3.1
NovellNetmail Version3.1 Updatef
NovellNetmail Version3.5.2 Updatea
NovellNetmail Version3.5.2 Updateb
NovellNetmail Version3.5.2 Updatec
NovellNetmail Version3.5.2 Updatec1
NovellNetmail Version3.5.2 Updatee-ftfl
NovellNetmail Version3.10
NovellNetmail Version3.10 Updatea
NovellNetmail Version3.10 Updateb
NovellNetmail Version3.10 Updatec
NovellNetmail Version3.10 Updated
NovellNetmail Version3.10 Updatee
NovellNetmail Version3.10 Updatef
NovellNetmail Version3.10 Updateg
NovellNetmail Version3.10 Updateh
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 4.33% 0.878
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N