CVE Vulnerabilities

CVE-2008-5696

Published: Dec 19, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Novell NetWare 6.5 before Support Pack 8, when an OES2 Linux server is installed into the NDS tree, does not require a password for the ApacheAdmin console, which allows remote attackers to reconfigure the Apache HTTP Server via console operations.

Affected Software

Name Vendor Start Version End Version
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell 6.5 6.5
Netware Novell * 6.5

References