Lucene search

K
cve[email protected]CVE-2010-2351
HistoryJun 21, 2010 - 7:30 p.m.

CVE-2010-2351

2010-06-2119:30:02
CWE-119
web.nvd.nist.gov
20
netware
smb
buffer overflow
cve-2010-2351
nvd
security
novell netware

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8.4 High

AI Score

Confidence

Low

0.451 Medium

EPSS

Percentile

97.4%

Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.

Affected configurations

NVD
Node
novellnetwareRange6.5sp8
OR
novellnetwareMatch5.0
OR
novellnetwareMatch5.0sp3
OR
novellnetwareMatch5.1sp7
OR
novellnetwareMatch5.1sp8
OR
novellnetwareMatch6.0sp1
OR
novellnetwareMatch6.0sp2
OR
novellnetwareMatch6.0sp3
OR
novellnetwareMatch6.0sp4
OR
novellnetwareMatch6.0sp5
OR
novellnetwareMatch6.5
OR
novellnetwareMatch6.5sp1
OR
novellnetwareMatch6.5sp2
OR
novellnetwareMatch6.5sp3
OR
novellnetwareMatch6.5sp4
OR
novellnetwareMatch6.5sp5
OR
novellnetwareMatch6.5sp6
OR
novellnetwareMatch6.5sp7
OR
novellnetwareMatch5.1
OR
novellnetwareMatch6.0

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8.4 High

AI Score

Confidence

Low

0.451 Medium

EPSS

Percentile

97.4%

Related for CVE-2010-2351