--%> SecPod SCAP Repo, a repository of SCAP Content (CVE, CCE, CPE, CWE, OVAL and XCCDF)
[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96174

 
 

909

 
 

78077

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2008-1809

Date: (C)2008-07-14   (M)2017-08-08
 
CVSS Score: 10.0Access Vector: NETWORK
Exploitability Subscore: 10.0Access Complexity: LOW
Impact Subscore: 10.0Authentication: NONE
 Confidentiality: COMPLETE
 Integrity: COMPLETE
 Availability: COMPLETE











Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request containing "NULL search parameters."

Reference:
SECTRACK-1020470
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=724
BID-30175
SECUNIA-31036
ADV-2008-2062
http://www.novell.com/support/viewContent.do?externalId=3843876
novell-edirectory-ldap-bo(43716)

CPE    2
cpe:/a:novell:edirectory:8.8
cpe:/a:novell:edirectory:8.7.3
CWE    1
CWE-119

© 2013 SecPod Technologies