Lucene search

K
cve[email protected]CVE-2002-1772
HistoryJun 21, 2005 - 4:00 a.m.

CVE-2002-1772

2005-06-2104:00:00
web.nvd.nist.gov
17
novell
netware
local privilege escalation
cve-2002-1772
security vulnerability
nds
nvd

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.8%

Novell Netware 5.0 through 5.1 may allow local users to gain “Domain Admin” rights by logging into a Novell Directory Services (NDS) account, and executing “net use” on an NDS_ADM account that is not in the NT domain but has domain access rights, which allows the user to enter a null password.

Affected configurations

NVD
Node
novellnetwareMatch5.0
OR
novellnetwareMatch5.0sp5
OR
novellnetwareMatch5.1

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.8%

Related for CVE-2002-1772