PT-2003-1160 · Novell · Novell Netware

Published

2003-04-11

·

Updated

2008-09-05

·

CVE-2002-1413

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Novell Netware SP2
Description The issue allows remote attackers to bypass authentication when RconJ is run in secure mode, utilizing the RconJ "Secure IP" (SSL) option during a connection.
Recommendations For Novell Netware SP2, consider disabling the RconJ "Secure IP" (SSL) option as a temporary workaround until a patch is available. Restrict access to RconJ to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1413

Affected Products

Novell Netware