Vulnerabilities > CVE-2006-5854 - Remote Buffer Overflow vulnerability in Novell Netware Client 4.91

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
novell
nessus
exploit available

Summary

Multiple buffer overflows in the Spooler service (nwspool.dll) in Novell Netware Client 4.91 through 4.91 SP2 allow remote attackers to execute arbitrary code via a long argument to the (1) EnumPrinters and (2) OpenPrinter functions.

Vulnerable Configurations

Part Description Count
Application
Novell
3

Exploit-Db

  • descriptionMultiple Printer Providers (spooler service) Privilege Escalation Exploit. CVE-2006-5854. Local exploit for windows platform
    idEDB-ID:3220
    last seen2016-01-31
    modified2007-01-29
    published2007-01-29
    reporterAndres Tarasco
    sourcehttps://www.exploit-db.com/download/3220/
    titleMultiple Printer Providers spooler service - Privilege Escalation Exploit
  • descriptionNovell Client 4.91 NWSPOOL.DLL Remote Buffer Overflow Vulnerability. CVE-2006-5854. Remote exploit for windows platform
    idEDB-ID:29146
    last seen2016-02-03
    modified2006-11-21
    published2006-11-21
    reporterAndres Tarasco Acuna
    sourcehttps://www.exploit-db.com/download/29146/
    titleNovell Client 4.91 NWSPOOL.DLL Remote Buffer Overflow Vulnerability

Nessus

NASL familyWindows
NASL idNOVELL_TID2974765.NASL
descriptionThe file
last seen2020-06-01
modified2020-06-02
plugin id23699
published2006-11-21
reporterThis script is Copyright (C) 2006-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/23699
titleNovell NetWare Client Print Provider (nwspool.dll) Multiple Function Overflow

Saint

bid21220
descriptionNovell Client nwspool.dll buffer overflow
idprinter_novellclient
osvdb30547
titlenovell_client_nwspool
typeremote

Seebug

  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:6084
    last seen2017-11-19
    modified2007-01-30
    published2007-01-30
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-6084
    titleMultiple Printer Providers (spooler service) Privilege Escalation Exploit
  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:82679
    last seen2017-11-19
    modified2014-07-01
    published2014-07-01
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-82679
    titleNovell Client 4.91 NWSPOOL.DLL Remote Buffer Overflow Vulnerability
  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:83034
    last seen2017-11-19
    modified2014-07-01
    published2014-07-01
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-83034
    titleSSC DiskAccess NFS Client DAPCNFSD.DLL Stack Buffer Overflow Vulnerability