Page 6 of 32 results (0.005 seconds)

CVSS: 5.0EPSS: 5%CPEs: 3EXPL: 0

Novell Netware NWFTPD 5.06.05 allows remote attackers to cause a denial of service (ABEND) via an MDTM command that uses a long path for the target file, possibly due to a buffer overflow. • http://secunia.com/advisories/19265 http://securitytracker.com/id?1015781 http://support.novell.com/cgi-bin/search/searchtid.cgi?/2973435.htm http://www.osvdb.org/23949 http://www.securityfocus.com/bid/17137 http://www.vupen.com/english/advisories/2006/0975 https://exchange.xforce.ibmcloud.com/vulnerabilities/25289 •

CVSS: 5.0EPSS: 2%CPEs: 4EXPL: 1

Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm. • https://www.exploit-db.com/exploits/16832 http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971821.htm http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971822.htm http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971832.htm •

CVSS: 5.0EPSS: 0%CPEs: 10EXPL: 0

Unknown vulnerability in the TCP/IP functionality (TCPIP.NLM) in Novell Netware 6.x allows remote attackers to cause a denial of service (ABEND by Page Fault Processor Exception) via certain packets. • http://secunia.com/advisories/14874 http://support.novell.com/cgi-bin/search/searchtid.cgi?/2970467.htm http://www.securityfocus.com/bid/13067 https://exchange.xforce.ibmcloud.com/vulnerabilities/20024 •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 1

The xvesa code in Novell Netware 6.5 SP2 and SP3 allows remote attackers to redirect the xsession without authentication via a direct request to GUIMirror/Start. • http://securitytracker.com/id?1013460 http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971038.htm http://www.securityfocus.com/bid/12831 •

CVSS: 10.0EPSS: 4%CPEs: 4EXPL: 0

webadmin-apache.conf in Novell Web Manager of Novell NetWare 6.5 uses an uppercase Alias tag with an inconsistent lowercase directory tag for a volume, which allows remote attackers to bypass access control to the WEB-INF folder. • http://secunia.com/advisories/12049 http://securitytracker.com/id?1011012 http://support.novell.com/cgi-bin/search/searchtid.cgi?/10094233.htm http://www.osvdb.org/9103 http://www.securityfocus.com/bid/11000 https://exchange.xforce.ibmcloud.com/vulnerabilities/40478 • CWE-287: Improper Authentication •