Vulnerability index

Browse CVEs

145 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Zenworks Desktop Management HIGH 9.3
CVE-2008-5073EPSS 5%

Heap-based buffer overflow in an ActiveX control in Novell ZENworks Desktop Management 6.5 allows remote attackers to execute arbitrary code via a lo…

Mitigation only
Fix from $1,950 2008-11-14
Edirectory HIGH 10.0
CVE-2008-3159EPSS 9%

Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers …

Mitigation only
Fix from $1,950 2008-07-14
Client HIGH 7.2
CVE-2008-2145

Stack-based buffer overflow in Novell Client 4.91 SP4 and earlier allows local users to cause a denial of service (crash) and possibly execute arbitr…

Mitigation only
Fix from $1,950 2008-05-12
Groupwise HIGH 9.3
CVE-2008-2069EPSS 33%

Buffer overflow in Novell GroupWise 7 allows remote attackers to cause a denial of service or execute arbitrary code via a long argument in a mailto:…

No fix yet
Fix from $1,950 2008-05-02
Edirectory MEDIUM 5.0
CVE-2008-1777

The eDirectory Host Environment service (dhost.exe) in Novell eDirectory 8.8.2 allows remote attackers to cause a denial of service (CPU consumption)…

No fix yet
Fix from $1,600 2008-04-14
Apparmor HIGH 7.5
CVE-2008-0731

The Linux kernel before 2.6.18.8-0.8 in SUSE openSUSE 10.2 does not properly handle failure of an AppArmor change_hat system call, which might allow …

Mitigation only
Fix from $1,950 2008-02-12
Access Manager HIGH 7.5
CVE-2007-3570

The Linux Access Gateway in Novell Access Manager before 3.0 SP1 Release Candidate 1 (RC1) allows remote attackers to bypass unspecified security con…

Mitigation only
Fix from $1,950 2007-07-05
Client MEDIUM 6.0
CVE-2007-0108

nwgina.dll in Novell Client 4.91 SP3 for Windows 2000/XP/2003 does not delete user profiles during a Terminal Service or Citrix session, which allows…

Mitigation only
Fix from $1,600 2007-01-09
Apache Http Server MEDIUM 6.8
CVE-2006-6675

Cross-site scripting (XSS) vulnerability in Novell NetWare 6.5 Support Pack 5 and 6 and Novell Apache on NetWare 2.0.48 allows remote attackers to in…

No fix yet
Fix from $1,600 2006-12-21
Zenworks Patch Management Server HIGH 7.5
CVE-2006-6450EPSS 22%

Multiple SQL injection vulnerabilities in dagent/downloadreport.asp in Novell ZENworks Patch Management (ZPM) before 6.3.2.700 allow remote attackers…

Mitigation only
Fix from $1,950 2006-12-10
Client HIGH 10.0
CVE-2006-6443

Buffer overflow in the Novell Distributed Print Services (NDPS) Print Provider for Windows component (NDPPNT.DLL) in Novell Client 4.91 has unknown i…

No fix yet
Fix from $1,950 2006-12-10
Edirectory HIGH 7.5
CVE-2006-5814

Unspecified vulnerability in Novell eDirectory allows remote attackers to execute arbitrary code, as demonstrated by vd_novell.pm, a "Novell eDirecto…

No fix yet
Fix from $1,950 2006-11-08
Edirectory MEDIUM 5.0
CVE-2006-5813

Unspecified vulnerability in Novell eDirectory 8.8 allows attackers to cause a denial of service, as demonstrated by vd_novell3.pm, a "Novell eDirect…

No fix yet
Fix from $1,600 2006-11-08
Open Enterprise Server MEDIUM 5.0
CVE-2006-0997

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) permits encryption with a NULL key, which res…

Mitigation only
Fix from $1,600 2006-03-23
Open Enterprise Server MEDIUM 5.0
CVE-2006-0998

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) sometimes selects a weak cipher instead of an…

Mitigation only
Fix from $1,600 2006-03-23
Open Enterprise Server MEDIUM 5.0
CVE-2006-0999

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) allows a client to force the server to use we…

Mitigation only
Fix from $1,600 2006-03-23
Linux Desktop HIGH 10.0
CVE-2006-0736EPSS 7%

Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enterprise Server 1 allows remote …

No fix yet
Fix from $1,950 2006-02-27
Suse Linux MEDIUM 5.0
CVE-2006-0803

The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is not intended for signature v…

Mitigation only
Fix from $1,600 2006-02-23
Open Enterprise Server HIGH 7.5
CVE-2005-3655EPSS 6%

Heap-based buffer overflow in Novell Open Enterprise Server Remote Manager (novell-nrm) in Novell SUSE Linux Enterprise Server 9 allows remote attack…

No fix yet
Fix from $1,950 2005-12-31
Suse Linux MEDIUM 6.9
CVE-2005-4790

Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added …

Mitigation only
Fix from $1,600 2005-12-31
Netmail MEDIUM 6.4
CVE-2005-2176

Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attacker…

No fix yet
Fix from $1,600 2005-07-09
Edirectory MEDIUM 5.0
CVE-2005-1729

Novell eDirectory 8.7.3 allows remote attackers to cause a denial of service (application crash) via a URL containing an MS-DOS device name such as A…

Mitigation only
Fix from $1,600 2005-06-12
Zenworks HIGH 7.5
CVE-2005-1543EPSS 66%

Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Man…

Mitigation only
Fix from $1,950 2005-05-25
Linux Desktop HIGH 7.2
CVE-2005-1040

Multiple unknown vulnerabilities in netapplet in Novell Linux Desktop 9 allow local users to gain root privileges, related to "User input [being] pas…

Mitigation only
Fix from $1,950 2005-05-02
Ichain MEDIUM 5.0
CVE-2005-0746

The Mini FTP server in Novell iChain 2.2 and 2.3 SP2 and earlier allows remote unauthenticated attackers to obtain the full path of the server via th…

Mitigation only
Fix from $1,600 2005-05-02
Ichain HIGH 7.5
CVE-2005-0798

Novell iChain Mini FTP Server 2.3, and possibly earlier versions, does not limit the number of incorrect logins, which makes it easier for remote att…

Mitigation only
Fix from $1,950 2005-03-15
Groupwise MEDIUM 5.0
CVE-2005-0296

NOTE: this issue has been disputed by the vendor. The error module in Novell GroupWise WebAccess allows remote attackers who have not authenticated …

Mitigation only
Fix from $1,600 2005-01-17
Netware HIGH 10.0
CVE-2004-2734

webadmin-apache.conf in Novell Web Manager of Novell NetWare 6.5 uses an uppercase Alias tag with an inconsistent lowercase directory tag for a volum…

Mitigation only
Fix from $1,950 2004-12-31
Client Firewall HIGH 7.2
CVE-2004-2554

Novell Client Firewall (NCF) 2.0, as based on the Agnitum Outpost Firewall, allows local users to execute arbitrary code with SYSTEM privileges by op…

Mitigation only
Fix from $1,950 2004-12-31
Netware MEDIUM 5.0
CVE-2004-2104EPSS 12%

Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to obtain sensitive server information, including the internal IP address, v…

Mitigation only
Fix from $1,600 2004-12-31