CVE-2009-2457

CWE-94Code Injection3 documents3 sources
Severity
5.0MEDIUM
EPSS
0.8%
top 26.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 14
Latest updateMay 2

Description

The DS\NDSD component in Novell eDirectory 8.8 before SP5 allows remote attackers to cause a denial of service (crash) via a malformed bind LDAP packet.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pgx3-7h5c-ggf2: The DS\NDSD component in Novell eDirectory 82022-05-02
CVEList
CVE-2009-2457: The DS\NDSD component in Novell eDirectory 82009-07-14
CVE-2009-2457 (MEDIUM CVSS 5) | The DS\NDSD component in Novell eDi | cvebase.io