Search: "novell"

464 CVEs found

CVE-2012-0410
5.0 MEDIUM

Directory traversal vulnerability in WebAccess in Novell GroupWise before 8.03 allows remote attackers to read arbitrary files via the User.interface parameter.

Published: 2012-07-05
Products: 43
Vendors:
novell
CVE-2011-2657
6.8 MEDIUM

Directory traversal vulnerability in the LaunchProcess function in the LaunchHelp.HelpLauncher.1 ActiveX control in LaunchHelp.dll in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2...

Published: 2012-07-26
Products: 3
Vendors:
novell
CVE-2011-2658
6.8 MEDIUM

The ISList.ISAvi ActiveX control in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 provides access to the mscomct2.ocx file, which allows remote attackers to exec...

Published: 2012-07-26
Products: 3
Vendors:
novell
CVE-2011-3174
6.8 MEDIUM

Buffer overflow in the DoFindReplace function in the ISGrid.Grid2.1 ActiveX control in InstallShield/ISGrid2.dll in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1...

Published: 2012-07-26
Products: 3
Vendors:
novell
CVE-2011-3827
4.3 MEDIUM

The iCalendar component in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 allows remote attackers to cause a denial of service (out-of-bounds read and daem...

Published: 2012-09-19
Products: 4
Vendors:
novell
CVE-2012-0271
10.0 HIGH

Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before SP1 might allow remote attackers to execute arbitra...

Published: 2012-09-19
Products: 43
Vendors:
novell
CVE-2012-0272
4.3 MEDIUM

Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 8.0 before Support Pack 3 allows remote attackers to inject arbitrary web script or HTML via the merge parameter...

Published: 2012-09-19
Products: 4
Vendors:
novell
CVE-2012-0417
10.0 HIGH

Integer overflow in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to execute arbitrary code via unspecified vecto...

Published: 2012-09-28
Products: 11
Vendors:
novell

Unspecified vulnerability in the client in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 on Windows allows user-assisted remote attackers to execute arbitrary code via a cr...

Published: 2012-09-28
Products: 12
Vendors:
microsoft novell
CVE-2012-0419
5.0 MEDIUM

Directory traversal vulnerability in the agent HTTP interfaces in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to read arbitrary files via director...

Published: 2012-09-28
Products: 11
Vendors:
novell
CVE-2012-4912
4.3 MEDIUM

Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to inject arbitrary web script ...

Published: 2012-09-28
Products: 11
Vendors:
novell

The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hard-coded password of Scott for the (1) GetFile_Password and (2...

Published: 2012-10-20
Products: 1
Vendors:
novell
CVE-2012-4956
10.0 HIGH

Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL elements in an SRS record.

Published: 2012-11-18
Products: 1
Vendors:
novell

Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD request with a full pathname in a PATH element of an ...

Published: 2012-11-18
Products: 1
Vendors:
novell

Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a 126 /FSF/CMD request with a .. (dot dot) in a FILE element of an F...

Published: 2012-11-18
Products: 1
Vendors:
novell
CVE-2012-4959
10.0 HIGH

Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to upload and execute files via a 130 /FSF/CMD request with a .. (dot dot) in a FILE element of ...

Published: 2012-11-18
Products: 1
Vendors:
novell
CVE-2012-0411
10.0 HIGH

Unspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version action.

Published: 2012-12-24
Products: 25
Vendors:
novell
CVE-2012-0432
10.0 HIGH

Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors.

Published: 2012-12-25
Products: 2
Vendors:
microfocus

An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code via (1) a pointer argument to the SetE...

Published: 2013-02-24
Products: 14
Vendors:
novell
CVE-2013-0804
10.0 HIGH

The client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference) via unspecifi...

Published: 2013-02-24
Products: 14
Vendors:
novell