CVE-2005-1677 describes an unknown vulnerability in Groove Virtual Office and Groove Workspace that allows remote attackers to bypass restrictions on COM objects. With a CVSS score of 7.5, this high-severity flaw could lead to partial compromise of confidentiality, integrity, and availability, requiring no authentication. Despite its age and potential impact, there is no known exploit code available in public databases like Metasploit or ExploitDB, and it has garnered minimal community discussion or media coverage. The EPSS score and lack of KEV listing suggest it is not currently a priority for active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.5n_build_1871CPE matchmatch criteria | cpe:2.3:a:groove:groove_workspace:*:*:*:*:*:*:*:* | ||
<= 3.1_build_2338CPE matchmatch criteria | cpe:2.3:a:groove:virtual_office:*:*:*:*:*:*:*:* | ||
<= 3.1a_build_2364CPE matchmatch criteria | cpe:2.3:a:groove:virtual_office:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.