Vulnerabilities > Novell > Netware > 5.0

DATE CVE VULNERABILITY TITLE RISK
2010-06-21 CVE-2010-2351 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.
network
low complexity
novell CWE-119
critical
10.0
2002-12-31 CVE-2002-1772 Unspecified vulnerability in Novell Netware 5.0/5.1
Novell Netware 5.0 through 5.1 may allow local users to gain "Domain Admin" rights by logging into a Novell Directory Services (NDS) account, and executing "net use" on an NDS_ADM account that is not in the NT domain but has domain access rights, which allows the user to enter a null password.
local
low complexity
novell
4.6
2002-12-31 CVE-2002-1634 Information Disclosure vulnerability in Netscape Enterprise Web Server for Netware 5.0/5.1
Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndsobj.nlm, (2) allfield.jse, (3) websinfo.bas, (4) ndslogin.pl, (5) volscgi.pl, (6) lancgi.pl, (7) test.jse, or (8) env.pl.
network
low complexity
novell
5.0
2000-06-26 CVE-2000-0600 Netscape Enterprise Server in NetWare 5.1 allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed URL.
network
low complexity
netscape novell
7.5
1999-07-15 CVE-1999-1086 Unspecified vulnerability in Novell Netware
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.
network
low complexity
novell
critical
10.0