CVE-2002-1417: Medium severity Novell Small Business Suite vulnerability
Directory traversal vulnerability in Novell NetBasic Scripting Server (NSN) for Netware 5.1 and 6, and Novell Small Business Suite 5.1 and 6, allows remote attackers to read arbitrary files via a URL containing a "..%5c" sequence (modified dot-dot), which is mapped to the directory separator.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1417?
CVE-2002-1417 has a medium severity rating due to its potential to allow remote attackers to access sensitive files.
How do I fix CVE-2002-1417?
To fix CVE-2002-1417, ensure that your Novell Small Business Suite and NetWare servers are updated to the latest patches provided by Novell.
What systems are impacted by CVE-2002-1417?
CVE-2002-1417 affects Novell NetWare versions 5.1 and 6.0, as well as Novell Small Business Suite versions 5.1 and 6.0.
What type of vulnerability is CVE-2002-1417?
CVE-2002-1417 is a directory traversal vulnerability that allows attackers to manipulate URLs to access restricted files.
Is CVE-2002-1417 easy to exploit?
Exploitation of CVE-2002-1417 is relatively easy, requiring only a crafted URL with specific traversal sequences.