CVE-1999-1086

Novell NetWare < 5.0 - Remote Privilege Escalation via Spoofed MAC Address in IPC Fragmented Packets

Title source: llm
STIX 2.1

Description

Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.

References (2)

Core 2
Core References
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/528
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=93214475111651&w=2

Scores

EPSS 0.0078
EPSS Percentile 73.8%

Details

Status published
Products (3)
novell/netware 4.1
novell/netware 4.11 sp5b
novell/netware < 5.0
Published Jul 15, 1999
Tracked Since Feb 18, 2026