CVE-2007-2475: Medium severity Novell SecureLogin vulnerability
Published May 2, 2007
·Updated
Unspecified vulnerability in the ADSCHEMA utility in Novell SecureLogin (NSL) 6 SP1 before 6.0.106 has unknown impact and remote attack vectors, related to granting "users excess permissions to their own attributes."
Affected Software
1 affected component
Novell SecureLogin<=6
Remediation
Event History
May 2, 2007
CVE Published
11:19 PM
May 3, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2475?
The severity of CVE-2007-2475 is currently unspecified, but it potentially allows remote attacks due to excess permissions granted to users.
2
How do I fix CVE-2007-2475?
To fix CVE-2007-2475, update to Novell SecureLogin version 6.0.106 or later.
3
What are the attack vectors for CVE-2007-2475?
CVE-2007-2475 has unknown attack vectors that could potentially be exploited remotely.
4
Who is affected by CVE-2007-2475?
CVE-2007-2475 affects users of Novell SecureLogin 6 SP1 before version 6.0.106.
5
What kind of permissions issue is related to CVE-2007-2475?
CVE-2007-2475 is related to an issue where users are granted excess permissions to their own attributes.