CVE-2002-1438: Medium severity Novell NetWare FTP Server vulnerability
Published Apr 11, 2003
·Updated
The web handler for Perl 5.003 on Novell NetWare 5.1 and NetWare 6 allows remote attackers to obtain Perl version information via the -v option.
Affected Software
4 affected components
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=5.1-sp4
Novell NetWare FTP Server=6.0
Novell NetWare FTP Server=6.0-sp1
Remediation
Patch Available
Patch Available
Event History
Apr 11, 2003
CVE Published
04:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1438?
CVE-2002-1438 is classified as a medium severity vulnerability.
2
How do I fix CVE-2002-1438?
To fix CVE-2002-1438, upgrade to a version of Novell NetWare that is not vulnerable to this issue.
3
Who is affected by CVE-2002-1438?
CVE-2002-1438 affects users running Perl 5.003 on Novell NetWare 5.1 and 6.0, specifically certain service pack versions.
4
What type of attack can exploit CVE-2002-1438?
CVE-2002-1438 can be exploited by remote attackers to disclose sensitive version information of the Perl interpreter.
5
What is the description of CVE-2002-1438?
CVE-2002-1438 allows remote attackers to obtain Perl version information via the -v option, which can aid in further attacks.