Unrated severityNVD Advisory· Published Aug 11, 2006· Updated Apr 16, 2026
CVE-2006-3818
CVE-2006-3818
Description
Cross-site scripting (XSS) vulnerability in the login page in Novell GroupWise WebAccess 6.5 before 20060721 and WebAccess 7 before 20060727 allows remote attackers to inject arbitrary web script or HTML via the GWAP.version parameter.
Affected products
2cpe:2.3:a:novell:groupwise_webaccess:6.5:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:novell:groupwise_webaccess:6.5:*:*:*:*:*:*:*
- cpe:2.3:a:novell:groupwise_webaccess:7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/21411nvdThird Party Advisory
- securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- support.novell.com/cgi-bin/search/searchtid.cginvdVendor Advisory
- www.securityfocus.com/bid/19297nvdThird Party AdvisoryVDB Entry
- www.vupen.com/english/advisories/2006/3098nvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/28210nvdThird Party AdvisoryVDB Entry
- secure-support.novell.com/KanisaPlatform/Publishing/228/3574517_f.SAL_Public.htmlnvdPermissions RequiredVendor Advisory
News mentions
0No linked articles in our index yet.