← Back to CVE List
Vulnerability Intelligence Report

CVE-2003-1596

NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.

No Active Exploit Signals
CVSS Base Score
7.5
HIGH
EPSS Probability:2.06%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
novell netware_ftp_server 5.01i, 5.01o, 5.01w, 5.01y, 5.02b, 5.02i, 5.02r, 5.02y
novell netware 5.1, 6.0, 6.5

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.061%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2010-04-05T00:00:00
Published2010-04-05T15:15:00
Last Updated2024-09-16T19:51:36

LINK COPIED TO CLIPBOARD