Lucene search

K
nvd[email protected]NVD:CVE-2000-0651
HistoryJul 07, 2000 - 4:00 a.m.

CVE-2000-0651

2000-07-0704:00:00
web.nvd.nist.gov
3

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.005

Percentile

75.6%

The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the victim’s machine.

Affected configurations

Nvd
Node
novellbordermanagerMatch3.0
OR
novellbordermanagerMatch3.5
VendorProductVersionCPE
novellbordermanager3.0cpe:2.3:a:novell:bordermanager:3.0:*:*:*:*:*:*:*
novellbordermanager3.5cpe:2.3:a:novell:bordermanager:3.5:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.005

Percentile

75.6%

Related for NVD:CVE-2000-0651