Lucene search

K
cve[email protected]CVE-2004-2767
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2004-2767

2022-10-0316:14:14
CWE-264
web.nvd.nist.gov
29
nwftpd
nlm
novell netware
ftp server
denial of service
cve-2004-2767

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.9 Medium

AI Score

Confidence

High

0.022 Low

EPSS

Percentile

89.6%

NWFTPD.nlm before 5.04.25 in the FTP server in Novell NetWare does not promptly close DS sessions, which allows remote attackers to cause a denial of service (connection slot exhaustion) by establishing many FTP sessions that persist for the lifetime of a DS session.

Affected configurations

NVD
Node
novellnetware_ftp_server
AND
novellnetware

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.9 Medium

AI Score

Confidence

High

0.022 Low

EPSS

Percentile

89.6%

Related for CVE-2004-2767