CVE-2000-0669
published 2000-07-11CVE-2000-0669: Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.
PriorityP416medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
2.54%
83.2th percentile
Novell NetWare 5.0 allows remote attackers to cause a denial of service by flooding port 40193 with random data.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| novell | netware | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Novell Netware 5.0 SP5/6.0 SP1 - SMDR.NLM Denial of Service
exploitdb·2000-07-11
CVE-2000-0669 Novell Netware 5.0 SP5/6.0 SP1 - SMDR.NLM Denial of Service
Novell Netware 5.0 SP5/6.0 SP1 - SMDR.NLM Denial of Service
---
source: https://www.securityfocus.com/bid/1467/info
When Novell Netware is configured with IPX-Compatibility enabled, it is vulnerable to a denial of service attack by sending packets with random data to port 40193. Similar results are possible by sending fragmented packets. This has been observed on Novell Netware 5.0 service pack 5, other versions may be vulnerable.
This behaviour has also been reported on Novell Netware 6.0 service pack 1.
It should be noted that configuration of Netware with IPX is not supported and it is not advised for production servers.
Using the tool 'netcat':
# cat /dev/urandom | nc XXX.XXX.XXX.XXX 40193
Exploit-DB
Microsoft Internet Explorer 4/5 - ActiveX 'Eyedog' Remote Overflow
exploitdb·1999-08-21
CVE-1999-0669 Microsoft Internet Explorer 4/5 - ActiveX 'Eyedog' Remote Overflow
Microsoft Internet Explorer 4/5 - ActiveX 'Eyedog' Remote Overflow
---
Microsoft Internet Explorer 4.0/5.0 for Windows 95/Windows NT 4/Windows 2000/Windows 95/Windows 98 ActiveX "Eyedog" Vulnerability
source: https://www.securityfocus.com/bid/619/info
The Eyedog ActiveX control is marked 'safe for scripting' although it permits registry access and other information gathering methods to be used. It also contains a buffer overflow error. These weaknesses can be exploited remotely via a malicious webpage or email.
With this control, MSInfoLoadFile is the offending method.
There is no easy way to RET to our code, so instead, I have
shown how to simply RET to ExitProcess directly. This will
cause the host to terminate.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/1467http://www.securityfocus.com/templates/archive.pike?list=1&msg=000501bfeab5%249330c3d0%24d801a8c0%40dimuthu.baysidegrp.com.auhttp://www.securityfocus.com/bid/1467http://www.securityfocus.com/templates/archive.pike?list=1&msg=000501bfeab5%249330c3d0%24d801a8c0%40dimuthu.baysidegrp.com.au
2000-07-11
Published