Description
Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndsobj.nlm, (2) allfield.jse, (3) websinfo.bas, (4) ndslogin.pl, (5) volscgi.pl, (6) lancgi.pl, (7) test.jse, or (8) env.pl.
Affected products
- Novell / netware5.0 – 5.0
- Novell / netware5.1 – 5.1
Exploits & proofs of concept
- exploit-dbNetscape Enterprise Web Server for Netware 4/5 5.0 - Information Disclosureby Procheckup
References
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/9212
- MISChttp://www.kb.cert.org/vuls/id/159203
- MISChttp://www.procheckup.com/security_info/vuln_pr0203.html
- MISChttp://www.osvdb.org/17464
- MISChttp://www.osvdb.org/17465
- VENDOR_ADVISORYhttp://www.securityfocus.com/advisories/4158
- MISChttp://www.osvdb.org/17468
- MISChttp://www.osvdb.org/17463
- VENDOR_ADVISORYhttp://www.securityfocus.com/advisories/4157
- MISChttp://www.osvdb.org/17466
- MISChttp://www.securityfocus.com/bid/4874
- MISChttp://www.osvdb.org/17467
- MISChttp://www.procheckup.com/security_info/vuln_pr0201.html
- MISChttp://www.osvdb.org/17461
- MISChttp://support.novell.com/cgi-bin/search/searchtid.cgi?/10064452.htm
- MISChttp://www.osvdb.org/17462
Updated 29m ago · 8 sources