6.4

CVE-2005-2176

Exploit

Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NovellNetmail Version3.0.1
NovellNetmail Version3.0.3a Updatea
NovellNetmail Version3.0.3a Updateb
NovellNetmail Version3.1
NovellNetmail Version3.1 Updatef
NovellNetmail Version3.5.2 Updatea
NovellNetmail Version3.5.2 Updateb
NovellNetmail Version3.5.2 Updatec
NovellNetmail Version3.5.2 Updatec1
NovellNetmail Version3.5.2 Updatee-ftfl
NovellNetmail Version3.10
NovellNetmail Version3.10 Updatea
NovellNetmail Version3.10 Updateb
NovellNetmail Version3.10 Updatec
NovellNetmail Version3.10 Updated
NovellNetmail Version3.10 Updatee
NovellNetmail Version3.10 Updatef
NovellNetmail Version3.10 Updateg
NovellNetmail Version3.10 Updateh
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.33% 0.878
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N