Vulnerabilities > Novell > Netware > 5.1

DATE CVE VULNERABILITY TITLE RISK
2011-03-22 CVE-2010-4228 Buffer Errors vulnerability in Novell Netware 5.1/6.0/6.5
Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated users to execute arbitrary code or cause a denial of service (abend) via a long DELE command, a different vulnerability than CVE-2010-0625.4.
network
low complexity
novell CWE-119
critical
9.0
2010-06-21 CVE-2010-2351 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.
network
low complexity
novell CWE-119
critical
10.0
2010-04-05 CVE-2010-0625 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
network
low complexity
novell CWE-119
6.5
2010-04-05 CVE-2003-1596 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2002-2434 Denial-Of-Service vulnerability in Netware
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
network
low complexity
novell
5.0
2010-04-05 CVE-2002-2433 Improper Input Validation vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
network
low complexity
novell CWE-20
4.0
2010-04-05 CVE-2000-1246 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.01o in the FTP server in Novell NetWare 5.1 SP3 allows remote authenticated users to cause a denial of service (abend) by sending an RNTO command after a failed RNFR command.
network
novell CWE-119
3.5
2010-04-05 CVE-2000-1245 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
Multiple unspecified vulnerabilities in NWFTPD.nlm before 5.01o in the FTP server in Novell NetWare 5.1 SP3 allow remote attackers to bypass intended restrictions on anonymous access via unknown vectors.
network
low complexity
novell CWE-264
7.5
2005-09-08 CVE-2005-2852 Denial-Of-Service vulnerability in Novell Netware 5.1/6.0/6.5
Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.
network
low complexity
novell
5.0
2004-12-31 CVE-2004-2106 Remote Security vulnerability in Novell Netware 5.1/6.0
Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to list directories via a direct request to (1) /com/, (2) /com/novell/, (3) /com/novell/webaccess, or (4) /ns-icons/.
network
low complexity
novell
5.0