Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
edirectory vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2017-7429
The certificate upload in NetIQ eDirectory PKI plugin prior to 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated malicious users to execute JSP applets on the iManager server.
Netiq Edirectory 8.8.8
Microfocus Edirectory
NA
CVE-2006-4177
Heap-based buffer overflow in the NCP engine in Novell eDirectory prior to 8.8.1 FTF1 allows remote malicious users to execute arbitrary code via a crafted NCP over IP packet that causes NCP to read more data than intended.
Novell Edirectory
Novell Edirectory 8.8
7.5
CVSSv3
CVE-2018-17950
Incorrect enforcement of authorization checks in eDirectory before 9.1 SP2
Microfocus Edirectory
Microfocus Edirectory 9.1
7.5
CVSSv3
CVE-2017-9277
The LDAP backend in Novell eDirectory prior to 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA.
Novell Edirectory
Novell Edirectory 9.0
NA
CVE-2008-3159
Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 prior to 8.7.3 SP10b and 8.8 prior to 8.8.2 ftf2 allows remote malicious users to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to "flawed ari...
Novell Edirectory 8.8
Novell Edirectory 8.7.3
NA
CVE-2012-0432
Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x prior to 8.8.7.2 allows remote malicious users to have an unspecified impact via unknown vectors.
Microfocus Edirectory 8.8.7.0
Microfocus Edirectory 8.8.7.1
2 EDB exploits
9.8
CVSSv3
CVE-2002-2119
Novell eDirectory 8.6.2 and 8.7 use case insensitive passwords, which makes it easier for remote malicious users to conduct brute force password guessing.
Novell Edirectory 8.6.2
Novell Edirectory 8.7
NA
CVE-2008-1809
Heap-based buffer overflow in Novell eDirectory 8.7.3 prior to 8.7.3.10b, and 8.8 prior to 8.8.2 FTF2, allows remote malicious users to execute arbitrary code via an LDAP search request containing "NULL search parameters."
Novell Edirectory 8.7.3
Novell Edirectory 8.8
NA
CVE-2006-4509
Integer overflow in the evtFilteredMonitorEventsRequest function in the LDAP service in Novell eDirectory prior to 8.8.1 FTF1 allows remote malicious users to execute arbitrary code via a crafted request.
Novell Edirectory 8.8
Novell Edirectory 8.8.1
NA
CVE-2010-4327
Unspecified vulnerability in the NCP service in Novell eDirectory 8.8.5 prior to 8.8.5.6 and 8.8.6 prior to 8.8.6.2 allows remote malicious users to cause a denial of service (hang) via a malformed FileSetLock request to port 524.
Novell Edirectory 8.8.6
Novell Edirectory 8.8.5
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
firewall
CVE-2024-35649
stored XSS
CVE-2022-28654
CVE-2020-35153
CVE-2024-27348
CVE-2022-28652
local users
CVE-2017-3506
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »