Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2005-1543

5 documents4 sources
Severity
7.5HIGH
EPSS
80.4%
top 0.88%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedMay 25
Latest updateMay 1

Description

Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote attackers to execute arbitrary code via (1) unspecified vectors, (2) type 1 authentication requests, and (3) type 2 authentication requests.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

🔴Vulnerability Details

2
GHSA
GHSA-q536-g998-6p38: Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem322022-05-01
CVEList
CVE-2005-1543: Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem322005-05-25

💥Exploits & PoCs

2
Exploit-DB
Novell ZENworks 6.5 - Desktop/Server Management Overflow (Metasploit)2010-07-25
Exploit-DB
Novell ZENworks 6.5 - Desktop/Server Management Remote Stack Overflow (Metasploit)2005-08-12
CVE-2005-1543 (HIGH CVSS 7.5) | Multiple stack-based and heap-based | cvebase.io