CVE-2002-0930Use of Externally-Controlled Format String in Netware

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
1.1%
top 22.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 4
Latest updateApr 30

Description

Format string vulnerability in the FTP server for Novell Netware 6.0 SP1 (NWFTPD) allows remote attackers to cause a denial of service (ABEND) via format strings in the USER command.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-2pqf-f6j5-7m26: Format string vulnerability in the FTP server for Novell Netware 62022-04-30
CVEList
CVE-2002-0930: Format string vulnerability in the FTP server for Novell Netware 62002-08-31
CVE-2002-0930 — Novell Netware vulnerability | cvebase