Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-1729

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2005-1729
Last Modified 05 Sep 2008 04:49:55
Published 12 Jun 2005 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2005-1729

Summary

Novell eDirectory 8.7.3 allows remote attackers to cause a denial of service (application crash) via a URL containing an MS-DOS device name such as AUX, CON, PRN, COM1, or LPT1.

Vulnerable Systems

Application

  • Novell Edirectory 8.7.3


References

MISC - http://www.cirt.dk/advisories/cirt-33-advisory.pdf

FULLDISC - 20050612 [CIRT.DK - Advisory] Novell eDirectory 8.7.3 DOS Device name Denial of Service

CONFIRM - http://support.novell.com/cgi-bin/search/searchtid.cgi?/10097766.htm

SECTRACK - 1014177

SECUNIA - 15676


Last Updated: 27 May 2016 10:40:16