Vulnerabilities > Novell > Edirectory > High

DATE CVE VULNERABILITY TITLE RISK
2006-10-24 CVE-2006-4177 Remote Heap Overflow vulnerability in Novell eDirectory NCP Packet Processing
Heap-based buffer overflow in the NCP engine in Novell eDirectory before 8.8.1 FTF1 allows remote attackers to execute arbitrary code via a crafted NCP over IP packet that causes NCP to read more data than intended.
network
low complexity
novell
7.5
2005-08-12 CVE-2005-2551 Buffer Overflow vulnerability in Novell Edirectory 8.7.3
Buffer overflow in dhost.exe in iMonitor for Novell eDirectory 8.7.3 on Windows allows attackers to cause a denial of service (crash) and obtain access to files via unknown vectors.
network
low complexity
novell
7.5
2004-11-23 CVE-2004-0079 NULL Pointer Dereference vulnerability in multiple products
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
7.5
2003-03-31 CVE-2002-1552 Unspecified vulnerability in Novell Edirectory
Novell eDirectory (eDir) 8.6.2 and Netware 5.1 eDir 85.x allows users with expired passwords to gain inappropriate permissions when logging in from Remote Manager.
network
low complexity
novell
7.5