CVE-2011-2223: Medium severity novell mobility pack vulnerability
The Mobility Pack before 1.2 in Novell Data Synchronizer 1.x through 1.1.2 build 428 sends the Admin LDAP password in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2223?
CVE-2011-2223 is considered to have a medium severity due to the risk of sensitive information being exposed over the network.
How do I fix CVE-2011-2223?
To fix CVE-2011-2223, upgrade to Novell Data Synchronizer Mobility Pack version 1.2 or later to ensure secure transmission of passwords.
What systems are affected by CVE-2011-2223?
CVE-2011-2223 affects Novell Data Synchronizer versions 1.0.0, 1.1.0, 1.1.1, and 1.1.2, along with Novell Mobility Pack versions 1.0 and 1.1.
Can CVE-2011-2223 lead to unauthorized access?
Yes, CVE-2011-2223 can potentially allow unauthorized access to sensitive information by exposing the Admin LDAP password in cleartext.
What is the primary impact of CVE-2011-2223?
The primary impact of CVE-2011-2223 is unauthorized access to sensitive information due to the transmission of credentials in cleartext over the network.