Vulnerabilities > Novell > Netware

DATE CVE VULNERABILITY TITLE RISK
2010-04-05 CVE-2003-1596 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2003-1595 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly perform "intruder detection," which has unspecified impact and attack vectors.
network
low complexity
novell CWE-264
critical
10.0
2010-04-05 CVE-2003-1594 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly enforce FTPREST.TXT settings, which allows remote attackers to bypass intended access restrictions via an FTP session.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2003-1593 Permissions, Privileges, and Access Controls vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.
network
low complexity
novell CWE-264
7.5
2010-04-05 CVE-2003-1592 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware and Netware FTP Server
Multiple buffer overflows in NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allow remote attackers to cause a denial of service (abend) via a long (1) username or (2) password.
network
low complexity
novell CWE-119
5.0
2010-04-05 CVE-2003-1591 Denial-Of-Service vulnerability in Novell Netware 6.0/6.5
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allows user-assisted remote attackers to cause a denial of service (console hang) via a large number of FTP sessions, which are not properly handled during an NLM unload.
network
novell
4.3
2010-04-05 CVE-2002-2434 Denial-Of-Service vulnerability in Netware
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
network
low complexity
novell
5.0
2010-04-05 CVE-2002-2433 Improper Input Validation vulnerability in Novell Netware and Netware FTP Server
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
network
low complexity
novell CWE-20
4.0
2010-04-05 CVE-2002-2432 Denial-Of-Service vulnerability in Netware FTP Server
Unspecified vulnerability in NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via a crafted username.
network
low complexity
novell
5.0
2010-04-05 CVE-2001-1587 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Netware
NWFTPD.nlm before 5.01w in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via an anonymous STOU command.
network
low complexity
novell CWE-119
5.0