9
CVSSv2

CVE-2007-1309

Published: 07/03/2007 Updated: 08/03/2011
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Novell Access Management 3 SSLVPN Server allows remote authenticated users to bypass VPN restrictions by making policy.txt read-only, disconnecting, then manually modifying policy.txt.

Vulnerable Product Search on Vulmon Subscribe to Product

novell access manager 3

Recent Articles

High-priority patch fixes critical vulns in RealPlayer
The Register • Dan Goodin • 25 Jul 2008

Available in Windows, Mac and Linux

RealNetworks has issued an update that patches four security holes in its RealPlayer jukebox program, including a critical flaw that vulnerability tracker Secunia published today. The company says versions for Windows, Mac, Linux operating systems are all vulnerable to at least one of the flaws and that users should update as soon as possible. Among the bugs that are fixed is a flaw within the handling of frames in Shockwave Flash (SWF) files that can be triggered by a heap-based buffer overflow...