Vulnerabilities > CVE-2005-2852 - Unspecified vulnerability in Novell Netware 5.1/6.0/6.5

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
novell
exploit available
metasploit

Summary

Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.

Vulnerable Configurations

Part Description Count
OS
Novell
4

Exploit-Db

descriptionNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow. CVE-2005-2852. Remote exploit for netware platform
idEDB-ID:16832
last seen2016-02-02
modified2010-05-09
published2010-05-09
reportermetasploit
sourcehttps://www.exploit-db.com/download/16832/
titleNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow

Metasploit

descriptionThis module exploits a stack buffer overflow in the NetWare CIFS.NLM driver. Since the driver runs in the kernel space, a failed exploit attempt can cause the OS to reboot.
idMSF:EXPLOIT/NETWARE/SMB/LSASS_CIFS
last seen2020-02-29
modified2017-07-24
published2008-01-28
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2852
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/netware/smb/lsass_cifs.rb
titleNovell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow