Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Novell Subscribe
Filtered by product Netware
Total 76 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1086 1 Novell 1 Netware 2016-10-17 10.0 HIGH N/A
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.
CVE-2011-4191 1 Novell 1 Netware 2011-11-30 7.5 HIGH N/A
Stack-based buffer overflow in the xdrDecodeString function in XNFS.NLM in Novell NetWare 6.5 SP8 allows remote attackers to execute arbitrary code or cause a denial of service (abend or NFS outage) via long packets.
CVE-2002-2433 1 Novell 2 Netware, Netware Ftp Server 2010-06-07 4.0 MEDIUM N/A
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
CVE-2003-1591 1 Novell 1 Netware 2010-06-07 4.3 MEDIUM N/A
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allows user-assisted remote attackers to cause a denial of service (console hang) via a large number of FTP sessions, which are not properly handled during an NLM unload.
CVE-2003-1596 1 Novell 2 Netware, Netware Ftp Server 2010-06-07 7.5 HIGH N/A
NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.
CVE-2002-2434 1 Novell 2 Netware, Netware Ftp Server 2010-06-07 5.0 MEDIUM N/A
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
CVE-2007-6735 1 Novell 2 Netware, Netware Ftp Server 2010-04-06 7.5 HIGH N/A
NWFTPD.nlm before 5.08.06 in the FTP server in Novell NetWare does not properly handle partial matches for container names in the FTPREST.TXT file, which allows remote attackers to bypass intended access restrictions via an FTP session.
CVE-2003-1595 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 10.0 HIGH N/A
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly perform "intruder detection," which has unspecified impact and attack vectors.
CVE-2004-2767 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 4.3 MEDIUM N/A
NWFTPD.nlm before 5.04.25 in the FTP server in Novell NetWare does not promptly close DS sessions, which allows remote attackers to cause a denial of service (connection slot exhaustion) by establishing many FTP sessions that persist for the lifetime of a DS session.
CVE-2007-6734 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 4.0 MEDIUM N/A
NWFTPD.nlm before 5.08.07 in the FTP server in Novell NetWare 6.5 SP7 does not properly implement the FTPREST.TXT NOREMOTE restriction, which allows remote authenticated users to access directories outside of the home server via unspecified vectors.
CVE-2003-1594 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 7.5 HIGH N/A
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly enforce FTPREST.TXT settings, which allows remote attackers to bypass intended access restrictions via an FTP session.
CVE-2003-1593 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 7.5 HIGH N/A
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.
CVE-2005-4887 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 7.5 HIGH N/A
NWFTPD.nlm before 5.06.05 in the FTP server in Novell NetWare 6.5 SP5 allows attackers to have an unspecified impact via vectors related to passwords.
CVE-2005-4888 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 5.0 MEDIUM N/A
NWFTPD.nlm before 5.06.04 in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (excessive stale connections) by establishing many FTP sessions, which persist in the Not-Logged-In state after each session is completed.
CVE-2003-1592 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 5.0 MEDIUM N/A
Multiple buffer overflows in NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 allow remote attackers to cause a denial of service (abend) via a long (1) username or (2) password.
CVE-2000-1246 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 3.5 LOW N/A
NWFTPD.nlm before 5.01o in the FTP server in Novell NetWare 5.1 SP3 allows remote authenticated users to cause a denial of service (abend) by sending an RNTO command after a failed RNFR command.
CVE-2000-1245 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 7.5 HIGH N/A
Multiple unspecified vulnerabilities in NWFTPD.nlm before 5.01o in the FTP server in Novell NetWare 5.1 SP3 allow remote attackers to bypass intended restrictions on anonymous access via unknown vectors.
CVE-2001-1587 1 Novell 1 Netware 2010-04-05 5.0 MEDIUM N/A
NWFTPD.nlm before 5.01w in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via an anonymous STOU command.
CVE-2002-2432 1 Novell 2 Netware, Netware Ftp Server 2010-04-05 5.0 MEDIUM N/A
Unspecified vulnerability in NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via a crafted username.
CVE-2000-0669 1 Novell 1 Netware 2008-09-10 5.0 MEDIUM N/A
Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.