Vulnerabilities > Novell > Zenworks Configuration Management > High

DATE CVE VULNERABILITY TITLE RISK
2020-01-25 CVE-2012-6345 Unspecified vulnerability in Novell Zenworks Configuration Management
Novell ZENworks Configuration Management before 11.2.4 allows obtaining sensitive trace information.
network
low complexity
novell
7.5
2017-08-09 CVE-2015-0785 Information Exposure vulnerability in Novell Zenworks Configuration Management
com.novell.zenworks.inventory.rtr.actionclasses.wcreports in Novell ZENworks Configuration Management (ZCM) allows remote attackers to read arbitrary folders via the dirname variable.
network
low complexity
novell CWE-200
7.5
2017-08-09 CVE-2015-0784 Information Exposure vulnerability in Novell Zenworks Configuration Management
Rtrlet.class in Novell ZENworks Configuration Management (ZCM) allows remote attackers to obtain Session IDs of logged in users via a value of ShowLogins for the maintenance variable.
network
low complexity
novell CWE-200
7.5