Vulnerabilities (CVE)

Filtered by vendor Novell Subscribe
Total 670 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0265 2 Microware, Novell 2 Os-9, Netware 2023-12-10 5.0 MEDIUM N/A
ICMP redirect messages may crash or lock up a host.
CVE-2000-0152 1 Novell 1 Bordermanager 2023-12-10 5.0 MEDIUM N/A
Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000.
CVE-1999-1086 1 Novell 1 Netware 2023-12-10 10.0 HIGH N/A
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.
CVE-2002-0530 1 Novell 1 Web Search 2023-12-10 5.1 MEDIUM N/A
Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as other Web Search users via the search parameter.
CVE-2002-0996 1 Novell 2 Netmail, Netmail Xe 2023-12-10 7.5 HIGH N/A
Multiple buffer overflows in Novell NetMail (NIMS) 3.0.3 before 3.0.3C allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) WebAdmin or (2) ModWeb.
CVE-2002-1552 1 Novell 1 Edirectory 2023-12-10 7.5 HIGH N/A
Novell eDirectory (eDir) 8.6.2 and Netware 5.1 eDir 85.x allows users with expired passwords to gain inappropriate permissions when logging in from Remote Manager.
CVE-1999-1006 1 Novell 1 Groupwise 2023-12-10 5.0 MEDIUM N/A
Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.
CVE-2003-0636 1 Novell 1 Ichain 2023-12-10 7.5 HIGH N/A
Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites.
CVE-2002-1772 1 Novell 1 Netware 2023-12-10 4.6 MEDIUM N/A
Novell Netware 5.0 through 5.1 may allow local users to gain "Domain Admin" rights by logging into a Novell Directory Services (NDS) account, and executing "net use" on an NDS_ADM account that is not in the NT domain but has domain access rights, which allows the user to enter a null password.
CVE-2004-2105 1 Novell 1 Netware 2023-12-10 5.0 MEDIUM N/A
The webacc servlet in Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to read arbitrary .htt files via a full pathname in the error parameter.