Novell iManager 2.5 and 2.0.2 allows remote attackers to cause a denial of service (crash) in the Tomcat server via a long TREE parameter in an HTTP POST, which triggers a NULL pointer dereference.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Imanager | Novell | * | 2.5 (including) |
Imanager | Novell | 1.5 (including) | 1.5 (including) |
Imanager | Novell | 2.0 (including) | 2.0 (including) |
Imanager | Novell | 2.0.2 (including) | 2.0.2 (including) |