Vulnerability index

Browse CVEs

373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Netware MEDIUM 6.4
CVE-2006-2327

Multiple integer overflows in the DPRPC library (DPRPCNLM.NLM) NDPS/iPrint module in Novell Distributed Print Services in Novell NetWare 6.5 SP3, SP4…

Patch available
Fix from $1,600 2006-05-12
Client HIGH 10.0
CVE-2006-2304EPSS 8%

Multiple integer overflows in the DPRPC library (DPRPCW32.DLL) in Novell Client 4.83 SP3, 4.90 SP2 and 4.91 SP2 allow remote attackers to execute arb…

Patch available
Fix from $1,950 2006-05-11
Groupwise Messenger HIGH 10.0
CVE-2006-0992EPSS 73%

Stack-based buffer overflow in Novell GroupWise Messenger before 2.0 Public Beta 2 allows remote attackers to execute arbitrary code via a long Accep…

Patch available
Fix from $1,950 2006-04-14
Open Enterprise Server MEDIUM 5.0
CVE-2006-0997

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) permits encryption with a NULL key, which res…

Mitigation only
Fix from $1,600 2006-03-23
Open Enterprise Server MEDIUM 5.0
CVE-2006-0998

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) sometimes selects a weak cipher instead of an…

Mitigation only
Fix from $1,600 2006-03-23
Open Enterprise Server MEDIUM 5.0
CVE-2006-0999

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) allows a client to force the server to use we…

Mitigation only
Fix from $1,600 2006-03-23
Netware Ftp Server MEDIUM 5.0
CVE-2006-1322

Novell Netware NWFTPD 5.06.05 allows remote attackers to cause a denial of service (ABEND) via an MDTM command that uses a long path for the target f…

Fix: after 5.06.05
Fix from $1,600 2006-03-20
Bordermanager MEDIUM 5.0
CVE-2006-1218

Unspecified vulnerability in the HTTP proxy in Novell BorderManager 3.8 and earlier allows remote attackers to cause a denial of service (CPU consump…

Patch available
Fix from $1,600 2006-03-14
Linux Desktop HIGH 10.0
CVE-2006-0736EPSS 7%

Stack-based buffer overflow in the pam_micasa PAM authentication module in CASA on Novell Linux Desktop 9 and Open Enterprise Server 1 allows remote …

No fix yet
Fix from $1,950 2006-02-27
Suse Linux MEDIUM 5.0
CVE-2006-0803

The signature verification functionality in the YaST Online Update (YOU) script handling relies on a gpg feature that is not intended for signature v…

Mitigation only
Fix from $1,600 2006-02-23
Imanager HIGH 9.3
CVE-2005-1730

Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL po…

Fix: after 2.0.2
Fix from $1,950 2005-12-31
Open Enterprise Server HIGH 7.5
CVE-2005-3655EPSS 6%

Heap-based buffer overflow in Novell Open Enterprise Server Remote Manager (novell-nrm) in Novell SUSE Linux Enterprise Server 9 allows remote attack…

No fix yet
Fix from $1,950 2005-12-31
Suse Linux MEDIUM 6.9
CVE-2005-4790

Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added …

Mitigation only
Fix from $1,600 2005-12-31
Netmail HIGH 7.5
CVE-2005-3314EPSS 66%

Stack-based buffer overflow in the IMAP daemon in Novell Netmail 3.5.2 allows remote attackers to execute arbitrary code via "long verb arguments."

Patch available
Fix from $1,950 2005-11-18
Zenworks Patch Management Server HIGH 7.5
CVE-2005-3315EPSS 5%

Multiple SQL injection vulnerabilities in Novell ZENworks Patch Management 6.x before 6.2.2.181 allow remote attackers to execute arbitrary SQL comma…

Patch available
Fix from $1,950 2005-10-30
Groupwise MEDIUM 5.0
CVE-2005-2804EPSS 5%

Integer overflow in the registry parsing code in GroupWise 6.5.3, and possibly earlier version, allows remote attackers to cause a denial of service …

Patch available
Fix from $1,600 2005-10-04
Netware MEDIUM 5.0
CVE-2005-2852EPSS 40%

Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an…

Patch available
Fix from $1,600 2005-09-08
Groupwise MEDIUM 5.0
CVE-2005-2620

grpWise.exe for Novell GroupWise client 5.5 through 6.5.2 stores the password in plaintext in memory, which allows attackers to obtain the password u…

Patch available
Fix from $1,600 2005-08-17
Edirectory HIGH 7.5
CVE-2005-2551EPSS 55%

Buffer overflow in dhost.exe in iMonitor for Novell eDirectory 8.7.3 on Windows allows attackers to cause a denial of service (crash) and obtain acce…

Patch available
Fix from $1,950 2005-08-12
Groupwise HIGH 7.5
CVE-2005-2346

Buffer overflow in Novell GroupWise 6.5 Client allows remote attackers to execute arbitrary code via a GWVW02xx.INI language file with a long entry, …

Patch available
Fix from $1,950 2005-08-03
Netmail MEDIUM 6.4
CVE-2005-2176

Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attacker…

No fix yet
Fix from $1,600 2005-07-09
Edirectory MEDIUM 5.0
CVE-2005-1729

Novell eDirectory 8.7.3 allows remote attackers to cause a denial of service (application crash) via a URL containing an MS-DOS device name such as A…

Mitigation only
Fix from $1,600 2005-06-12
Linux Desktop HIGH 7.2
CVE-2005-1763

Buffer overflow in ptrace in the Linux Kernel for 64-bit architectures allows local users to write bytes into kernel memory.

Patch available
Fix from $1,950 2005-06-09
Netmail HIGH 7.5
CVE-2005-1757

Buffer overflow in the Modweb agent for Novell NetMail 3.52 before 3.52C, when renaming folders, may allow attackers to execute arbitrary code.

Patch available
Fix from $1,950 2005-06-08
Netmail HIGH 7.5
CVE-2005-1758EPSS 16%

Buffer overflow in the IMAP command continuation function in Novell NetMail 3.52 before 3.52C may allow remote attackers to execute arbitrary code.

Patch available
Fix from $1,950 2005-06-08
Zenworks HIGH 7.5
CVE-2005-1543EPSS 66%

Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Man…

Mitigation only
Fix from $1,950 2005-05-25
Ichain HIGH 10.0
CVE-2005-0744

The web GUI for Novell iChain 2.2 and 2.3 SP2 and SP3 allows attackers to hijack sessions and gain administrator privileges by (1) sniffing the conne…

Patch available
Fix from $1,950 2005-05-02
Linux Desktop HIGH 7.2
CVE-2005-1040

Multiple unknown vulnerabilities in netapplet in Novell Linux Desktop 9 allow local users to gain root privileges, related to "User input [being] pas…

Mitigation only
Fix from $1,950 2005-05-02
Ichain MEDIUM 5.0
CVE-2005-0746

The Mini FTP server in Novell iChain 2.2 and 2.3 SP2 and earlier allows remote unauthenticated attackers to obtain the full path of the server via th…

Mitigation only
Fix from $1,600 2005-05-02
Netware MEDIUM 5.0
CVE-2005-0819

The xvesa code in Novell Netware 6.5 SP2 and SP3 allows remote attackers to redirect the xsession without authentication via a direct request to GUIM…

Patch available
Fix from $1,600 2005-05-02