Vulnerabilities > Novell > Netware > High

DATE CVE VULNERABILITY TITLE RISK
2003-10-27 CVE-2003-1150 Buffer Overrun vulnerability in Novell PMAP.NLM
Buffer overflow in the portmapper service (PMAP.NLM) in Novell NetWare 6 SP3 and ZenWorks for Desktops 3.2 SP2 through 4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via unknown attack vectors.
network
low complexity
novell
7.5
2003-04-11 CVE-2002-1436 Unspecified vulnerability in Novell Netware 5.1/6.0
The web handler for Perl 5.003 on Novell NetWare 5.1 and NetWare 6 allows remote attackers to execute arbitrary Perl code via an HTTP POST request.
network
low complexity
novell
7.5
2003-04-11 CVE-2002-1413 Authentication Bypass vulnerability in Novell Netware 6.0
RCONAG6 for Novell Netware SP2, while running RconJ in secure mode, allows remote attackers to bypass authentication using the RconJ "Secure IP" (SSL) option during a connection.
network
low complexity
novell
7.5
2002-12-31 CVE-2002-2096 Remote Manager Authentication Buffer Overflow vulnerability in Novell Netware 5.1/6.0
Buffer overflow in Novell Remote Manager module, httpstk.nlm, in NetWare 5.1 and NetWare 6 allows remote attackers to execute arbitrary code via a long (1) username or (2) password.
network
low complexity
novell
7.5
2000-06-26 CVE-2000-0600 Netscape Enterprise Server in NetWare 5.1 allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed URL.
network
low complexity
netscape novell
7.5
1999-12-31 CVE-1999-1382 Unspecified vulnerability in Novell Netware
NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.
local
low complexity
novell
7.2
1998-09-18 CVE-1999-1020 Unspecified vulnerability in Novell Netware 4.1/4.11
The installation of Novell Netware NDS 5.99 provides an unauthenticated client with Read access for the tree, which allows remote attackers to access sensitive information such as users, groups, and readable objects via CX.EXE and NLIST.EXE.
network
low complexity
novell
7.5