Vulnerabilities > Novell > Netware FTP Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2010-04-05 CVE-2010-0625 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
network
low complexity
novell CWE-119
6.5
2010-04-05 CVE-2007-6734 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.08.07 in the FTP server in Novell NetWare 6.5 SP7 does not properly implement the FTPREST.TXT NOREMOTE restriction, which allows remote authenticated users to access directories outside of the home server via unspecified vectors.
network
low complexity
novell CWE-264
4.0
2010-04-05 CVE-2005-4888 Denial-Of-Service vulnerability in Novell NetWare
NWFTPD.nlm before 5.06.04 in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (excessive stale connections) by establishing many FTP sessions, which persist in the Not-Logged-In state after each session is completed.
network
low complexity
novell
5.0
2010-04-05 CVE-2004-2767 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.04.25 in the FTP server in Novell NetWare does not promptly close DS sessions, which allows remote attackers to cause a denial of service (connection slot exhaustion) by establishing many FTP sessions that persist for the lifetime of a DS session.
network
novell CWE-264
4.3
2010-04-05 CVE-2003-1592 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Multiple buffer overflows in NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allow remote attackers to cause a denial of service (abend) via a long (1) username or (2) password.
network
low complexity
novell CWE-119
5.0
2010-04-05 CVE-2002-2434 Denial-Of-Service vulnerability in Netware
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
network
low complexity
novell
5.0
2010-04-05 CVE-2002-2433 Improper Input Validation vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
network
low complexity
novell CWE-20
4.0
2010-04-05 CVE-2002-2432 Denial-Of-Service vulnerability in Netware FTP Server
Unspecified vulnerability in NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via a crafted username.
network
low complexity
novell
5.0
2006-03-20 CVE-2006-1322 Denial Of Service vulnerability in Novell Netware FTP Server
Novell Netware NWFTPD 5.06.05 allows remote attackers to cause a denial of service (ABEND) via an MDTM command that uses a long path for the target file, possibly due to a buffer overflow.
network
low complexity
novell
5.0