Vulnerability Details CVE-2011-2223
The Mobility Pack before 1.2 in Novell Data Synchronizer 1.x through 1.1.2 build 428 sends the Admin LDAP password in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 72.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2011-2223
-
cpe:2.3:a:novell:data_synchronizer:1.0.0
-
cpe:2.3:a:novell:data_synchronizer:1.1.0
-
cpe:2.3:a:novell:data_synchronizer:1.1.1
-
cpe:2.3:a:novell:data_synchronizer:1.1.2
-
cpe:2.3:a:novell:mobility_pack:1.0
-
cpe:2.3:a:novell:mobility_pack:1.1
-
cpe:2.3:a:novell:mobility_pack:1.1.1
-
cpe:2.3:a:novell:mobility_pack:1.1.2