5

CVE-2002-1417

Directory traversal vulnerability in Novell NetBasic Scripting Server (NSN) for Netware 5.1 and 6, and Novell Small Business Suite 5.1 and 6, allows remote attackers to read arbitrary files via a URL containing a "..%5c" sequence (modified dot-dot), which is mapped to the directory separator.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Novell ≫ Small Business Suite Version 5.1
Novell ≫ Small Business Suite Version 6.0
Novell ≫ Netware Version 5.1
Novell ≫ Netware Version 6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 16.62% 0.966
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/bugtraq/2002-08/0199.html
Patch
Vendor Advisory
http://support.novell.com/servlet/tidfinder/2963297
http://www.iss.net/security_center/static/9910.php
Patch
Vendor Advisory
http://www.securityfocus.com/bid/5523
Patch
Vendor Advisory