CVE-1999-1215
published 1993-09-16CVE-1999-1215: LOGIN.EXE program in Novell Netware 4.0 and 4.01 temporarily writes user name and password information to disk, which could allow local users to gain…
PriorityP411medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.38%
29.8th percentile
LOGIN.EXE program in Novell Netware 4.0 and 4.01 temporarily writes user name and password information to disk, which could allow local users to gain privileges.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| novell | netware | — | — |
| novell | netware | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Novell NetWare 4.0/4.01 login.exe missing encryption (CA-1993-12 / XFDB-545)
vuldb·2026-04-16·CVSS 4.6
CVE-1999-1215 [MEDIUM] Novell NetWare 4.0/4.01 login.exe missing encryption (CA-1993-12 / XFDB-545)
A vulnerability described as problematic has been identified in Novell NetWare 4.0/4.01. Affected by this vulnerability is an unknown functionality of the file login.exe. The manipulation results in missing encryption of sensitive data.
This vulnerability is reported as CVE-1999-1215. The attack requires a local approach. No exploit exists.
GHSA
GHSA-cqv7-rg6g-9wmv: LOGIN
ghsa_unreviewed·2022-04-30
CVE-1999-1215 [MEDIUM] GHSA-cqv7-rg6g-9wmv: LOGIN
LOGIN.EXE program in Novell Netware 4.0 and 4.01 temporarily writes user name and password information to disk, which could allow local users to gain privileges.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
1993-09-16
Published