CVE-2003-1593
published 2010-04-05CVE-2003-1593: NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers…
PriorityP340high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.91%
77.3th percentile
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| novell | netware | — | — |
| novell | netware | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Novell NetWare 6.0/6.5 access control
vuldb·2026-05-04·CVSS 7.5
CVE-2003-1593 [HIGH] Novell NetWare 6.0/6.5 access control
A vulnerability was found in Novell NetWare 6.0/6.5. It has been rated as critical. Impacted is an unknown function. Performing a manipulation results in improper access controls.
This vulnerability was named CVE-2003-1593. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
GHSA
GHSA-6ff4-c3cx-w2v5: NWFTPD
ghsa_unreviewed·2022-04-29
CVE-2003-1593 [HIGH] GHSA-6ff4-c3cx-w2v5: NWFTPD
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.
No detection rules found.
No writeups or analysis indexed.
2010-04-05
Published