Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-1678

Overview

Vulnerability Score 2.6 2.6
CVE Id CVE-2005-1678
Last Modified 05 Sep 2008 04:49:47
Published 20 May 2005 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity HIGH
Authentication NONE

CVE-2005-1678

Summary

Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 does not properly display file extensions on attached or embedded files in a compound document, which may allow remote attackers to trick users into executing malicious code.

Vulnerable Systems

Application

  • Groove Virtual Office 3.1 Build 2338

  • Groove Virtual Office 3.1a Build 2364

  • Groove Workspace 2.5n Build 1871


References

CONFIRM - http://www.kb.cert.org/vuls/id/JGEI-6BCRD6

CERT-VN - VU#232232

SECUNIA - 15421


Last Updated: 27 May 2016 10:40:15