CVE-2014-0611 - Irresponsible Pornprincess
Description
Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014 before Support Pack 2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Reference
https://bugzilla.novell.com/show_bug.cgi?id=909584 https://bugzilla.novell.com/show_bug.cgi?id=909590 https://bugzilla.novell.com/show_bug.cgi?id=909588 https://bugzilla.novell.com/show_bug.cgi?id=930467 https://bugzilla.novell.com/show_bug.cgi?id=909587 https://bugzilla.novell.com/show_bug.cgi?id=909586 http://www.novell.com/support/kb/doc.php?id=7016653 http://www.securitytracker.com/id/1032978