5

CVE-2006-0997

The SSL server implementation in NILE.NLM in Novell NetWare 6.5 and Novell Open Enterprise Server (OES) permits encryption with a NULL key, which results in cleartext communication that allows remote attackers to read an SSL protected session by sniffing network traffic.

Data is provided by the National Vulnerability Database (NVD)
NovellNetware Version6.5
NovellNetware Version6.5 Updatesp1
NovellNetware Version6.5 Updatesp1.1a
NovellNetware Version6.5 Updatesp1.1b
NovellNetware Version6.5 Updatesp2
NovellNetware Version6.5 Updatesp3
NovellNetware Version6.5 Updatesp4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.27% 0.497
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N