The xvesa code in Novell Netware 6.5 SP2 and SP3 allows remote attackers to redirect the xsession without authentication via a direct request to GUIMirror/Start.
References
Link | Resource |
---|---|
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971038.htm | Vendor Advisory |
http://www.securityfocus.com/bid/12831 | Patch |
http://securitytracker.com/id?1013460 | Exploit |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-01 21:00
Updated : 2008-09-05 13:47
NVD link : CVE-2005-0819
Mitre link : CVE-2005-0819
JSON object : View
CWE
Products Affected
novell
- netware