Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with OpenSSH, includes sensitive password information in the (1) NIOUTPUT.TXT and (2) NI.LOG log files, which might allow local users to obtain the passwords.
References
Link | Resource |
---|---|
http://secunia.com/advisories/11188 | Patch Vendor Advisory |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2968534.htm | Patch Vendor Advisory |
http://www.securityfocus.com/bid/9934 | Patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15600 | |
http://secunia.com/advisories/11188 | Patch Vendor Advisory |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2968534.htm | Patch Vendor Advisory |
http://www.securityfocus.com/bid/9934 | Patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15600 |
Configurations
History
20 Nov 2024, 23:53
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/11188 - Patch, Vendor Advisory | |
References | () http://support.novell.com/cgi-bin/search/searchtid.cgi?/2968534.htm - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/9934 - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/15600 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:53
NVD link : CVE-2004-2414
Mitre link : CVE-2004-2414
CVE.ORG link : CVE-2004-2414
JSON object : View
Products Affected
novell
- netware
CWE