Show filters
73 Total Results
Displaying 11-20 of 73
Sort by:
Attacker Value
Unknown
CVE-2018-7686
Disclosure Date: August 09, 2018 (last updated November 08, 2023)
Information leakage vulnerability in NetIQ eDirectory before 9.1.1 HF1 due to shared memory usage.
0
Attacker Value
Unknown
Certificate Revocation Check failure
Disclosure Date: July 10, 2018 (last updated November 08, 2023)
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
0
Attacker Value
Unknown
NetIQ eDirectory Denial of Service
Disclosure Date: March 21, 2018 (last updated November 08, 2023)
Addresses denial of service attack to eDirectory versions prior to 9.1.
0
Attacker Value
Unknown
Fix for NetIQ shell code upload
Disclosure Date: March 02, 2018 (last updated November 08, 2023)
The certificate upload in NetIQ eDirectory PKI plugin before 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated attackers to execute JSP applets on the iManager server.
0
Attacker Value
Unknown
existing connection is being used even though eDirectory LDAP server is upgrad…
Disclosure Date: March 02, 2018 (last updated November 08, 2023)
The LDAP backend in Novell eDirectory before 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA.
0
Attacker Value
Unknown
eDirectory LDAP peer certificate validation issue
Disclosure Date: March 02, 2018 (last updated November 08, 2023)
In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations.
0
Attacker Value
Unknown
Login restrictions not applied when using ebaclient against NetIQ eDirectory EB…
Disclosure Date: March 02, 2018 (last updated November 08, 2023)
NetIQ eDirectory before 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services.
0
Attacker Value
Unknown
CVE-2017-5186
Disclosure Date: April 27, 2017 (last updated November 08, 2023)
Novell iManager 2.7 before SP7 Patch 9, NetIQ iManager 3.x before 3.0.2.1, Novell eDirectory 8.8.x before 8.8 SP8 Patch 9 Hotfix 2, and NetIQ eDirectory 9.x before 9.0.2 Hotfix 2 (9.0.2.2) use the deprecated MD5 hashing algorithm in a communications certificate.
0
Attacker Value
Unknown
CVE-2016-9168
Disclosure Date: March 23, 2017 (last updated November 08, 2023)
A missing X-Frame-Options header in the NDS Utility Monitor in NDSD in Novell eDirectory before 9.0.2 could be used by remote attackers for clickjacking.
0
Attacker Value
Unknown
CVE-2016-9167
Disclosure Date: March 23, 2017 (last updated November 08, 2023)
NDSD in Novell eDirectory before 9.0.2 did not calculate ACLs on LDAP objects across partition boundaries correctly, which could lead to a privilege escalation by modifying user attributes that would otherwise be filtered by an ACL.
0