Skip to main content

Vendor archive

novell CVEs

Beta · best-effort

665 CVEs tagged to vendor novell156 Critical, 165 High, 313 Medium, 31 Low, 0 Unrated.

CVE-2008-1809

Published Jul 14, 2008

Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request con…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3159

Published Jul 14, 2008

Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3158

Published Jul 11, 2008

Unspecified vulnerability in NWFS.SYS in Novell Client for Windows 4.91 SP4 has unknown impact and attack vectors, possibly related to IOCTL requests that overwrite arbitrary memo…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2908

Published Jun 30, 2008

Multiple stack-based buffer overflows in a certain ActiveX control in ienipp.ocx in Novell iPrint Client for Windows before 4.36 allow remote attackers to execute arbitrary code v…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0925

Published Jun 18, 2008

Cross-site scripting (XSS) vulnerability in the iMonitor interface in Novell eDirectory 8.7.3.x before 8.7.3 sp10, and 8.8.x before 8.8.2 ftf2, allows remote attackers to inject a…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2703

Published Jun 13, 2008

Multiple stack-based buffer overflows in Novell GroupWise Messenger (GWIM) Client before 2.0.3 HP1 for Windows allow remote attackers to execute arbitrary code via "spoofed server…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2704

Published Jun 13, 2008

Novell GroupWise Messenger (GWIM) before 2.0.3 Hot Patch 1 allows remote attackers to cause a denial of service (crash) via a long user ID, possibly involving a popup alert. NOTE…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2145

Published May 12, 2008

Stack-based buffer overflow in Novell Client 4.91 SP4 and earlier allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long username i…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2069

Published May 2, 2008

Buffer overflow in Novell GroupWise 7 allows remote attackers to cause a denial of service or execute arbitrary code via a long argument in a mailto: URI.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0927

Published Apr 14, 2008

dhost.exe in Novell eDirectory 8.7.3 before sp10 and 8.8.2 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request with (1) multiple Connection…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1777

Published Apr 14, 2008

The eDirectory Host Environment service (dhost.exe) in Novell eDirectory 8.8.2 allows remote attackers to cause a denial of service (CPU consumption) via a long HTTP HEAD request…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1701

Published Apr 8, 2008

Novell NetWare 6.5 allows attackers to cause a denial of service (ABEND) via a crafted Macintosh iPrint client request.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0924

Published Mar 28, 2008

Stack-based buffer overflow in the DoLBURPRequest function in libnldap in ndsd in Novell eDirectory 8.7.3.9 and earlier, and 8.8.1 and earlier in the 8.8.x series, allows remote a…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0926

Published Mar 28, 2008

The SOAP interface to the eMBox module in Novell eDirectory 8.7.3.9 and earlier, and 8.8.x before 8.8.2, relies on client-side authentication, which allows remote attackers to byp…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1330

Published Mar 18, 2008

Unspecified vulnerability in the Windows client API in Novell GroupWise 7 before SP3 and 6.5 before SP6 Update 3 allows remote authenticated users to access the non-shared stored…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-0935

Published Feb 25, 2008

Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-6701

Published Feb 13, 2008

Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long argument…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0639

Published Feb 13, 2008

Stack-based buffer overflow in the EnumPrinters function in the Spooler service (nwspool.dll) in Novell Client 4.91 SP2, SP3, and SP4 for Windows allows remote attackers to execut…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-5762

Published Jan 9, 2008

NICM.SYS driver 3.0.0.4, as used in Novell NetWare Client 4.91 SP4, allows local users to execute arbitrary code by opening the \\.\nicm device and providing crafted kernel addres…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 451-475 of 665 CVEsPage 19 of 27