Vulnerability index

Browse CVEs

373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Iprint HIGH 10.0
CVE-2013-1091EPSS 6%

Stack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.

Fix: after 5.86
Fix from $1,950 2013-05-02
Imanager HIGH 10.0
CVE-2013-3268

Novell iManager 2.7 before SP6 Patch 1 does not refresh a token after a logout action, which has unspecified impact and remote attack vectors.

Fix: after 2.7
Fix from $1,950 2013-04-24
Imanager MEDIUM 6.8
CVE-2013-1088

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arb…

Fix: after 2.7
Fix from $1,600 2013-04-24
Kanaka MEDIUM 5.8
CVE-2013-2770

The installation functionality in the Novell Kanaka component before 2.8 for Novell Open Enterprise Server (OES) on Mac OS X does not verify the serv…

Fix: after 2.7.1
Fix from $1,600 2013-04-07
Zenworks Configuration Management HIGH 10.0
CVE-2013-1080EPSS 77%

The web server in Novell ZENworks Configuration Management (ZCM) 10.3 and 11.2 before 11.2.4 does not properly perform authentication for zenworks/js…

Mitigation only
Fix from $1,950 2013-03-29
Identity Manager Roles Based Provisioning Module HIGH 10.0
CVE-2013-1083

Unspecified vulnerability in the login functionality in the Reporting Module in Novell Identity Manager (aka IDM) Roles Based Provisioning Module 4.0…

Mitigation only
Fix from $1,950 2013-03-29
Groupwise Messenger HIGH 9.3
CVE-2013-1085EPSS 6%

Stack-based buffer overflow in the nim: protocol handler in Novell GroupWise Messenger 2.04 and earlier, and Novell Messenger 2.1.x and 2.2.x before …

Fix: after 2.2.1
Fix from $1,950 2013-03-29
Zenworks Mobile Management HIGH 7.5
CVE-2013-1082EPSS 13%

Directory traversal vulnerability in DUSAP.php in Novell ZENworks Mobile Management before 2.7.1 allows remote attackers to include and execute arbit…

Fix: after 2.7.0
Fix from $1,950 2013-03-29
Zenworks Configuration Management MEDIUM 6.8
CVE-2013-1079

Directory traversal vulnerability in the ISCreateObject method in an ActiveX control in InstallShield\ISProxy.dll in AdminStudio in Novell ZENworks C…

Mitigation only
Fix from $1,600 2013-03-29
Zenworks Mobile Management HIGH 7.5
CVE-2013-1081EPSS 68%

Directory traversal vulnerability in MDM.php in Novell ZENworks Mobile Management (ZMM) 2.6.1 and 2.7.0 allows remote attackers to include and execut…

Mitigation only
Fix from $1,950 2013-03-11
Groupwise HIGH 10.0
CVE-2013-0804EPSS 12%

The client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code or cause a denial of se…

Mitigation only
Fix from $1,950 2013-02-24
Groupwise HIGH 9.3
CVE-2012-0439EPSS 39%

An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute ar…

Mitigation only
Fix from $1,950 2013-02-24
Iprint HIGH 10.0
CVE-2012-0411

Unspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version ac…

Fix: after 5.78
Fix from $1,950 2012-12-24
File Reporter HIGH 10.0
CVE-2012-4956EPSS 38%

Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL …

Mitigation only
Fix from $1,950 2012-11-18
File Reporter HIGH 10.0
CVE-2012-4959EPSS 71%

Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to upload and execute files via a 130 /FSF/CM…

Mitigation only
Fix from $1,950 2012-11-18
File Reporter HIGH 7.8
CVE-2012-4957EPSS 68%

Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD re…

Mitigation only
Fix from $1,950 2012-11-18
File Reporter HIGH 7.8
CVE-2012-4958EPSS 74%

Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a 126 /FSF/CMD re…

Mitigation only
Fix from $1,950 2012-11-18
Zenworks Asset Management HIGH 7.8
CVE-2012-4933EPSS 44%

The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hard-coded pa…

No fix yet
Fix from $1,950 2012-10-20
Groupwise HIGH 10.0
CVE-2012-0417EPSS 6%

Integer overflow in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attack…

Patch available
Fix from $1,950 2012-09-28
Groupwise HIGH 9.3
CVE-2012-0418

Unspecified vulnerability in the client in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 on Windows allows user-assisted …

Patch available
Fix from $1,950 2012-09-28
Groupwise MEDIUM 5.0
CVE-2012-0419EPSS 42%

Directory traversal vulnerability in the agent HTTP interfaces in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows re…

Patch available
Fix from $1,600 2012-09-28
Groupwise HIGH 10.0
CVE-2012-0271EPSS 17%

Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before …

Mitigation only
Fix from $1,950 2012-09-19
Zenworks Configuration Management MEDIUM 6.8
CVE-2011-2657EPSS 48%

Directory traversal vulnerability in the LaunchProcess function in the LaunchHelp.HelpLauncher.1 ActiveX control in LaunchHelp.dll in AdminStudio in …

Patch available
Fix from $1,600 2012-07-26
Zenworks Configuration Management MEDIUM 6.8
CVE-2011-2658

The ISList.ISAvi ActiveX control in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 provides access to the mscom…

Patch available
Fix from $1,600 2012-07-26
Zenworks Configuration Management MEDIUM 6.8
CVE-2011-3174

Buffer overflow in the DoFindReplace function in the ISGrid.Grid2.1 ActiveX control in InstallShield/ISGrid2.dll in AdminStudio in Novell ZENworks Co…

Patch available
Fix from $1,600 2012-07-26
Groupwise MEDIUM 5.0
CVE-2012-0410

Directory traversal vulnerability in WebAccess in Novell GroupWise before 8.03 allows remote attackers to read arbitrary files via the User.interface…

Fix: after 8.02
Fix from $1,600 2012-07-05
Zenworks Configuration Management MEDIUM 5.0
CVE-2012-2215EPSS 28%

Directory traversal vulnerability in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to …

Patch available
Fix from $1,600 2012-04-09
Zenworks Configuration Management HIGH 10.0
CVE-2011-3175EPSS 66%

Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execut…

Mitigation only
Fix from $1,950 2012-04-09
Zenworks Configuration Management HIGH 10.0
CVE-2011-3176EPSS 70%

Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execut…

Mitigation only
Fix from $1,950 2012-04-09
Groupwise HIGH 7.5
CVE-2011-4189EPSS 12%

The client in Novell GroupWise 8.0x through 8.02HP3 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corru…

No fix yet
Fix from $1,950 2012-03-02