[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2002-1417Date: (C)2003-04-11   (M)2023-12-22


Directory traversal vulnerability in Novell NetBasic Scripting Server (NSN) for Netware 5.1 and 6, and Novell Small Business Suite 5.1 and 6, allows remote attackers to read arbitrary files via a URL containing a "..%5c" sequence (modified dot-dot), which is mapped to the directory separator.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 5.0
Exploit Score: 10.0
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: NONE
  
Reference:
http://archives.neohapsis.com/archives/bugtraq/2002-08/0199.html
BID-5523
http://support.novell.com/servlet/tidfinder/2963297
novell-netbasic-directory-traversal(9910)

CPE    4
cpe:/a:novell:small_business_suite:5.1
cpe:/a:novell:small_business_suite:6.0
cpe:/o:novell:netware:5.1
cpe:/o:novell:netware:6.0
...

© SecPod Technologies