CVE-2010-1930: Medium severity netiq imanager vulnerability
Published Jun 28, 2010
·Updated
Off-by-one error in Novell iManager 2.7, 2.7.3, and 2.7.3 FTF2 allows remote attackers to cause a denial of service (daemon crash) via a long tree parameter in a login request to nps/servlet/webacc.
Affected Software
3 affected components
Novell iManager=2.7.3-ftf2
Novell iManager=2.7.3
Novell iManager=2.7.0
Event History
Jun 28, 2010
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-1930?
CVE-2010-1930 is classified as a medium-severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2010-1930?
To mitigate CVE-2010-1930, you should upgrade Novell iManager to the latest patched version that addresses this vulnerability.
3
What types of attacks are possible with CVE-2010-1930?
CVE-2010-1930 allows remote attackers to exploit an off-by-one error, potentially leading to a crash of the iManager daemon.
4
Which versions of Novell iManager are affected by CVE-2010-1930?
CVE-2010-1930 affects Novell iManager versions 2.7.0, 2.7.3, and 2.7.3 FTF2.
5
Is CVE-2010-1930 a critical vulnerability?
CVE-2010-1930 is not considered critical, but it poses security risks that should be addressed promptly.