Show filters
73 Total Results
Displaying 11-20 of 73
Sort by:
Attacker Value
Unknown

CVE-2018-7686

Disclosure Date: August 09, 2018 (last updated November 08, 2023)
Information leakage vulnerability in NetIQ eDirectory before 9.1.1 HF1 due to shared memory usage.
0
Attacker Value
Unknown

Certificate Revocation Check failure

Disclosure Date: July 10, 2018 (last updated November 08, 2023)
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
0
Attacker Value
Unknown

NetIQ eDirectory Denial of Service

Disclosure Date: March 21, 2018 (last updated November 08, 2023)
Addresses denial of service attack to eDirectory versions prior to 9.1.
0
Attacker Value
Unknown

Fix for NetIQ shell code upload

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
The certificate upload in NetIQ eDirectory PKI plugin before 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated attackers to execute JSP applets on the iManager server.
0
Attacker Value
Unknown

existing connection is being used even though eDirectory LDAP server is upgrad…

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
The LDAP backend in Novell eDirectory before 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA.
0
Attacker Value
Unknown

eDirectory LDAP peer certificate validation issue

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations.
0
Attacker Value
Unknown

Login restrictions not applied when using ebaclient against NetIQ eDirectory EB…

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
NetIQ eDirectory before 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services.
0
Attacker Value
Unknown

CVE-2017-5186

Disclosure Date: April 27, 2017 (last updated November 08, 2023)
Novell iManager 2.7 before SP7 Patch 9, NetIQ iManager 3.x before 3.0.2.1, Novell eDirectory 8.8.x before 8.8 SP8 Patch 9 Hotfix 2, and NetIQ eDirectory 9.x before 9.0.2 Hotfix 2 (9.0.2.2) use the deprecated MD5 hashing algorithm in a communications certificate.
0
Attacker Value
Unknown

CVE-2016-9168

Disclosure Date: March 23, 2017 (last updated November 08, 2023)
A missing X-Frame-Options header in the NDS Utility Monitor in NDSD in Novell eDirectory before 9.0.2 could be used by remote attackers for clickjacking.
0
Attacker Value
Unknown

CVE-2016-9167

Disclosure Date: March 23, 2017 (last updated November 08, 2023)
NDSD in Novell eDirectory before 9.0.2 did not calculate ACLs on LDAP objects across partition boundaries correctly, which could lead to a privilege escalation by modifying user attributes that would otherwise be filtered by an ACL.
0