Lucene search

K
cve[email protected]CVE-2001-1233
HistoryMay 03, 2002 - 4:00 a.m.

CVE-2001-1233

2002-05-0304:00:00
web.nvd.nist.gov
22
netware enterprise web server 5.1
groupwise webaccess 5.5
novell directory services
nds
cve-2001-1233
vulnerability
remote attack
user enumeration
ndsobj.nlm.

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

52.2%

Netware Enterprise Web Server 5.1 running GroupWise WebAccess 5.5 with Novell Directory Services (NDS) enabled allows remote attackers to enumerate user names, group names and other system information by accessing ndsobj.nlm.

Affected configurations

NVD
Node
novellgroupwise_webaccessMatch5.5
Node
novellnetwareMatch5.1

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

52.2%

Related for CVE-2001-1233