Vulnerabilities > Novell > Netware > 6.0

DATE CVE VULNERABILITY TITLE RISK
2011-03-22 CVE-2010-4228 Buffer Errors vulnerability in Novell Netware 5.1/6.0/6.5
Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated users to execute arbitrary code or cause a denial of service (abend) via a long DELE command, a different vulnerability than CVE-2010-0625.4.
network
low complexity
novell CWE-119
critical
9.0
2010-06-21 CVE-2010-2351 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.
network
low complexity
novell CWE-119
critical
10.0
2010-04-05 CVE-2010-0625 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
network
low complexity
novell CWE-119
6.5
2010-04-05 CVE-2003-1596 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2003-1593 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2003-1592 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Multiple buffer overflows in NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allow remote attackers to cause a denial of service (abend) via a long (1) username or (2) password.
network
low complexity
novell CWE-119
5.0
2010-04-05 CVE-2003-1591 Denial-Of-Service vulnerability in Novell Netware 6.0/6.5
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allows user-assisted remote attackers to cause a denial of service (console hang) via a large number of FTP sessions, which are not properly handled during an NLM unload.
network
novell
4.3
2010-04-05 CVE-2002-2434 Denial-Of-Service vulnerability in Netware
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
network
low complexity
novell
5.0
2010-04-05 CVE-2002-2433 Improper Input Validation vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
network
low complexity
novell CWE-20
4.0
2005-09-08 CVE-2005-2852 Denial-Of-Service vulnerability in Novell Netware 5.1/6.0/6.5
Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.
network
low complexity
novell
5.0