Vulnerabilities > CVE-2005-2852 - Denial-Of-Service vulnerability in Novell Netware 5.1/6.0/6.5

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
novell
exploit available
metasploit

Summary

Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.

Vulnerable Configurations

Part Description Count
OS
Novell
4

Exploit-Db

descriptionNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow. CVE-2005-2852. Remote exploit for netware platform
idEDB-ID:16832
last seen2016-02-02
modified2010-05-09
published2010-05-09
reportermetasploit
sourcehttps://www.exploit-db.com/download/16832/
titleNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow

Metasploit

descriptionThis module exploits a stack buffer overflow in the NetWare CIFS.NLM driver. Since the driver runs in the kernel space, a failed exploit attempt can cause the OS to reboot.
idMSF:EXPLOIT/NETWARE/SMB/LSASS_CIFS
last seen2020-02-29
modified2017-07-24
published2008-01-28
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2852
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/netware/smb/lsass_cifs.rb
titleNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow