Vulnerabilities > Novell > Zenworks Configuration Management

DATE CVE VULNERABILITY TITLE RISK
2012-04-09 CVE-2011-3175 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Zenworks Configuration Management 11.1/11.1A
Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execute arbitrary code via an opcode 0x6c request.
network
low complexity
novell CWE-119
critical
10.0
2011-04-18 CVE-2010-4229 Path Traversal vulnerability in Novell Zenworks Configuration Management 10.3/10.3.1/11
Directory traversal vulnerability in an unspecified servlet in the Inventory component in ZENworks Asset Management (ZAM) in Novell ZENworks Configuration Management 10.3 before 10.3.2, and 11, allows remote attackers to overwrite files, and subsequently execute arbitrary code, via directory traversal sequences in a filename field in an upload request.
network
low complexity
novell CWE-22
critical
10.0