Skip to main content

Vendor/product archive

novell / open_enterprise_server CVEs

Beta · best-effort

20 CVEs tagged to novell / open_enterprise_server4 Critical, 6 High, 7 Medium, 3 Low, 0 Unrated.

CVE-2017-5182

Published Jan 23, 2017

Remote Manager in Open Enterprise Server (OES) allows unauthenticated remote attackers to read any arbitrary file, via a specially crafted URL, that allows complete directory trav…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0609

Published Aug 17, 2014

Unspecified vulnerability in Novell Open Enterprise Server (OES) 11 SP1 before Scheduled Maintenance Update 9415 and 11 SP2 before Scheduled Maintenance Update 9413 for Linux has…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-0599

Published Jun 18, 2014

Cross-site scripting (XSS) vulnerability in iPrint in Novell Open Enterprise Server (OES) 11 SP1 before Maintenance Update 9151 on Linux allows remote attackers to inject arbitrar…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0598

Published Jun 18, 2014

Directory traversal vulnerability in iPrint in Novell Open Enterprise Server (OES) 11 SP1 before Maintenance Update 9151 on Linux has unspecified impact and remote attack vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-0595

Published May 8, 2014

/opt/novell/ncl/bin/nwrights in Novell Client for Linux in Novell Open Enterprise Server (OES) 11 Linux SP2 does not properly manage a certain array, which allows local users to o…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-3707

Published Dec 1, 2013

The HTTPSTK service in the novell-nrm package before 2.0.2-297.305.302.3 in Novell Open Enterprise Server 2 (OES 2) Linux, and OES 11 Linux Gold and SP1, does not make the intende…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0115

Published Mar 30, 2009

The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly o…

CVSS 7.8 · High

CVE-2009-0611

Published Feb 17, 2009

Multiple cross-site scripting (XSS) vulnerabilities in qfsearch/AdminServlet in QuickFinder Server in Novell Open Enterprise Server 1.x allow remote attackers to inject arbitrary…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5021

Published Nov 13, 2008

nsFrameManager in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial…

CVSS 9.3 · Critical

CVE-2006-0997

Published Mar 23, 2006

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) permits encryption with a NULL key, which results in cleartext communicatio…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0998

Published Mar 23, 2006

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) sometimes selects a weak cipher instead of an available stronger cipher, wh…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0999

Published Mar 23, 2006

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) allows a client to force the server to use weak encryption by stating that…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3655

Published Dec 31, 2005

Heap-based buffer overflow in Novell Open Enterprise Server Remote Manager (novell-nrm) in Novell SUSE Linux Enterprise Server 9 allows remote attackers to execute arbitrary code…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-20 of 20 CVEsPage 1 of 1