CVE-2004-2106: Medium severity Novell NetWare FTP Server vulnerability
Published Dec 31, 2004
·Updated
Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to list directories via a direct request to (1) /com/, (2) /com/novell/, (3) /com/novell/webaccess, or (4) /ns-icons/.
Affected Software
2 affected components
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.0
Event History
Dec 31, 2004
CVE Published
05:00 AM
May 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2106?
CVE-2004-2106 is considered a moderate severity vulnerability due to the potential for exposing sensitive directory information.
2
How do I fix CVE-2004-2106?
To mitigate CVE-2004-2106, it is recommended to apply the latest patches from Novell for NetWare versions 5.1 and 6.0.
3
What systems are affected by CVE-2004-2106?
CVE-2004-2106 affects Novell NetWare Enterprise Web Server versions 5.1 and 6.0.
4
What type of attack does CVE-2004-2106 facilitate?
CVE-2004-2106 allows remote attackers to list directories on the server, potentially exposing sensitive information.
5
Is CVE-2004-2106 a local or remote vulnerability?
CVE-2004-2106 is a remote vulnerability, allowing attackers to exploit it without physical access to the server.