CVE-2010-2778

Novell GroupWise <7.0-8.0 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in WebAccess in Novell GroupWise 7.x before 7.0 post-SP4 FTF and 8.x before 8.0 SP2 allows remote attackers to inject arbitrary web script or HTML via a crafted message, related to a "Javascript XSS exploit."

Scores

EPSS 0.0027
EPSS Percentile 50.6%

Classification

CWE
CWE-79
Status published

Affected Products (7)

novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
n/a/n/a

Timeline

Published Jan 28, 2011
Tracked Since Feb 18, 2026