CVE-2010-0625

Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 96%
VendorProductVersion
novellnetware_ftp_server
5.01i:i
novellnetware_ftp_server
5.01o:o
novellnetware_ftp_server
5.01w:w
novellnetware_ftp_server
5.01y:y
novellnetware_ftp_server
5.02b:b
novellnetware_ftp_server
5.02i:i
novellnetware_ftp_server
5.02r:r
novellnetware_ftp_server
5.02y:y
novellnetware_ftp_server
5.03b:b
novellnetware_ftp_server
5.03l:l
novellnetware_ftp_server
5.04.5
novellnetware_ftp_server
5.04.8
novellnetware_ftp_server
5.04.20
novellnetware_ftp_server
5.04.25
novellnetware_ftp_server
5.05
novellnetware_ftp_server
5.05.04
novellnetware_ftp_server
5.06.04
novellnetware_ftp_server
5.06.05
novellnetware_ftp_server
5.07
novellnetware_ftp_server
5.07.02
novellnetware
5.1
novellnetware
5.1:sp2a
novellnetware
5.1:sp3
novellnetware
5.1:sp4
novellnetware
5.1:sp6
novellnetware
6.0
novellnetware
6.0:sp1
novellnetware
6.0:sp2
novellnetware
6.0:sp3
novellnetware
6.5
novellnetware
6.5:sp1
novellnetware
6.5:sp1.1a
novellnetware
6.5:sp1.1b
novellnetware
6.5:sp2
novellnetware
6.5:sp3
novellnetware
6.5:sp4
novellnetware
6.5:sp5
novellnetware
6.5:sp6
novellnetware
6.5:sp7
novellnetware
6.5:sp8
𝑥
= Vulnerable software versions