CVE-2003-1596

CWE-2643 documents3 sources
Severity
7.5HIGH
EPSS
0.1%
top 70.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 5
Latest updateApr 29

Description

NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDnovell/netware5.1, 6.0, 6.5+2

🔴Vulnerability Details

2
GHSA
GHSA-wgpp-vr3p-7534: NWFTPD2022-04-29
CVEList
CVE-2003-1596: NWFTPD2010-04-05