Vulnerabilities > Novell > Bordermanager > 3.8

DATE CVE VULNERABILITY TITLE RISK
2007-11-02 CVE-2007-5767 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Bordermanager
Heap-based buffer overflow in the Client Trust application (clntrust.exe) in Novell BorderManager 3.8 before Update 1.5 allows remote attackers to execute arbitrary code via a validation request in which the Novell tree name is not properly delimited with a wide-character backslash or NULL character.
network
low complexity
novell CWE-119
critical
10.0
2007-03-07 CVE-2006-7155 Unspecified vulnerability in Novell Bordermanager 3.8
Novell BorderManager 3.8 SP4 generates the same ISAKMP cookies for the same source IP and port number during the same day, which allows remote attackers to conduct denial of service and replay attacks.
network
low complexity
novell
7.5
2006-10-13 CVE-2006-5286 Remote Denial Of Service vulnerability in Novell Bordermanager 3.8
Unspecified vulnerability in IKE.NLM in Novell BorderManager 3.8 allows attackers to cause a denial of service (crash) via unknown attack vectors related to "VPN issues" for certain "IKE and IPsec settings."
network
low complexity
novell
5.0
2006-03-14 CVE-2006-1218 Remote Denial Of Service vulnerability in Novell Bordermanager 3.8
Unspecified vulnerability in the HTTP proxy in Novell BorderManager 3.8 and earlier allows remote attackers to cause a denial of service (CPU consumption and ABEND) via unknown attack vectors related to "media streaming over HTTP 1.1".
network
low complexity
novell
5.0
2004-12-31 CVE-2004-1457 Remote Denial Of Service vulnerability in Novell Bordermanager 3.8
The Virtual Private Network (VPN) capability in Novell Bordermanager 3.8 allows remote attackers to cause a denial of service (ABEND in IKE.NLM) via a malformed IKE packet, as sent by the Striker ISAKMP Protocol Test Suite.
network
low complexity
novell
5.0