Vulnerability Details CVE-2010-0625
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.336
EPSS Ranking 96.7%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2010-0625
-
cpe:2.3:a:novell:netware_ftp_server:5.01i
-
cpe:2.3:a:novell:netware_ftp_server:5.01o
-
cpe:2.3:a:novell:netware_ftp_server:5.01w
-
cpe:2.3:a:novell:netware_ftp_server:5.01y
-
cpe:2.3:a:novell:netware_ftp_server:5.02b
-
cpe:2.3:a:novell:netware_ftp_server:5.02i
-
cpe:2.3:a:novell:netware_ftp_server:5.02r
-
cpe:2.3:a:novell:netware_ftp_server:5.02y
-
cpe:2.3:a:novell:netware_ftp_server:5.03b
-
cpe:2.3:a:novell:netware_ftp_server:5.03l
-
cpe:2.3:a:novell:netware_ftp_server:5.04.20
-
cpe:2.3:a:novell:netware_ftp_server:5.04.25
-
cpe:2.3:a:novell:netware_ftp_server:5.04.5
-
cpe:2.3:a:novell:netware_ftp_server:5.04.8
-
cpe:2.3:a:novell:netware_ftp_server:5.05
-
cpe:2.3:a:novell:netware_ftp_server:5.05.04
-
cpe:2.3:a:novell:netware_ftp_server:5.06.04
-
cpe:2.3:a:novell:netware_ftp_server:5.06.05
-
cpe:2.3:a:novell:netware_ftp_server:5.07
-
cpe:2.3:a:novell:netware_ftp_server:5.07.02
-
cpe:2.3:o:novell:netware:5.1
-
cpe:2.3:o:novell:netware:6.0
-
cpe:2.3:o:novell:netware:6.5