CVE-1999-1020: High severity Novell NetWare FTP Server vulnerability
The installation of Novell Netware NDS 5.99 provides an unauthenticated client with Read access for the tree, which allows remote attackers to access sensitive information such as users, groups, and readable objects via CX.EXE and NLIST.EXE.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Revoke or disable Read permission for unauthenticated (anonymous) clients on the NDS tree to prevent anonymous/unauthenticated users from reading tree information via CX.EXE and NLIST.EXE.
Novell NetWare NDS tree Read access for unauthenticated clients = disabled - Compensating control
Restrict network access to NetWare/NDS services to trusted hosts or networks using perimeter firewalls or ACLs to prevent remote attackers from reaching the service.
- Operational
Audit the NDS tree for sensitive objects (users, groups, readable objects), review and correct access rights for exposed items, and monitor logs for accesses performed via CX.EXE and NLIST.EXE.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1020?
CVE-1999-1020 is considered a high severity vulnerability due to its ability to expose sensitive user information.
How do I fix CVE-1999-1020?
To mitigate CVE-1999-1020, you should configure access controls to restrict unauthenticated access on Novell Netware.
What systems are affected by CVE-1999-1020?
CVE-1999-1020 affects Novell NetWare versions 4.1 and 4.11 with Service Pack 5b.
What can attackers do with CVE-1999-1020?
Attackers exploiting CVE-1999-1020 can access sensitive information such as user and group details.
Is CVE-1999-1020 still relevant today?
While CVE-1999-1020 pertains to legacy software, its underlying principles of access control are still significant in modern systems.