A vulnerability in the administration console of Micro Focus GroupWise prior to version 18.0.2 may allow a remote attacker authenticated as an administrator to upload files to an arbitrary path on the server. In certain circumstances this could result in remote code execution.
                
            References
                    Configurations
                    History
                    21 Nov 2024, 03:45
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : 6.5 v3 : 9.1 | 
| References | () https://www.novell.com/support/kb/doc.php?id=7023223 - | 
Information
                Published : 2018-08-01 20:29
Updated : 2024-11-21 03:45
NVD link : CVE-2018-12468
Mitre link : CVE-2018-12468
CVE.ORG link : CVE-2018-12468
JSON object : View
Products Affected
                microfocus
- groupwise
CWE
                
                    
                        
                        CWE-434
                        
            Unrestricted Upload of File with Dangerous Type
