CVE-2012-4912

Novell GroupWise <2012 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to inject arbitrary web script or HTML via a crafted signature in an HTML e-mail message.

Scores

EPSS 0.0143
EPSS Percentile 80.5%

Classification

CWE
CWE-79
Status published

Affected Products (12)

novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
novell/groupwise
n/a/n/a

Timeline

Published Sep 28, 2012
Tracked Since Feb 18, 2026