CVE-2006-0999
 
Severity Score
5.0
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) allows a client to force the server to use weak encryption by stating that a weak cipher is required for client compatibility, which might allow remote attackers to decrypt contents of an SSL protected session.
La implementación del servidor SSL en NILE.NLM en Novell NetWare 6.5 y Novell Open Enterprise Server (OES) permite a un cliente forzar el servidor para usar cifrado débil afirmando que se requiere un cifrado débil para la compatibilidad del cliente, lo que podría permitir a atacantes remotos descifrar contenidos de una sesión SSL protegida.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2006-03-06 CVE Reserved
- 2006-03-23 CVE Published
- 2023-05-19 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/19324 | Third Party Advisory | |
http://securitytracker.com/id?1015799 | Vdb Entry | |
http://support.novell.com/cgi-bin/search/searchtid.cgi?10100633.htm | X_refsource_confirm | |
http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html | X_refsource_confirm | |
http://www.osvdb.org/24048 | Vdb Entry | |
http://www.securityfocus.com/bid/17176 | Vdb Entry | |
http://www.securityfocus.com/bid/64758 | Vdb Entry | |
http://www.vupen.com/english/advisories/2006/1043 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/25382 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Novell Search vendor "Novell" | Open Enterprise Server Search vendor "Novell" for product "Open Enterprise Server" | * | - |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | - |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp1 |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp1.1a |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp1.1b |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp2 |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp3 |
Affected
| ||||||
Novell Search vendor "Novell" | Netware Search vendor "Novell" for product "Netware" | 6.5 Search vendor "Novell" for product "Netware" and version "6.5" | sp4 |
Affected
|