7.2

CVE-2013-3697

Exploit

Integer overflow in the NWFS.SYS kernel driver 4.91.5.8 in Novell Client 4.91 SP5 on Windows XP and Windows Server 2003 and the NCPL.SYS kernel driver in Novell Client 2 SP2 on Windows Vista and Windows Server 2008 and Novell Client 2 SP3 on Windows Server 2008 R2, Windows 7, Windows 8, and Windows Server 2012 might allow local users to gain privileges via a crafted 0x1439EB IOCTL call.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NovellClient Version4.91 Updatesp5
NovellClient Version2.0 Updatesp2
NovellClient Version2.0 Updatesp3
   MicrosoftWindows 7
   MicrosoftWindows 8 Version- Update- Editionx64
   MicrosoftWindows 8 Version- Update- Editionx86
   MicrosoftWindows Server 2008 Versionr2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.052
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C