CVE-2002-2119

CRITICAL

Novell eDirectory <8.7 - Info Disclosure

Title source: llm
STIX 2.1

Description

Novell eDirectory 8.6.2 and 8.7 use case insensitive passwords, which makes it easier for remote attackers to conduct brute force password guessing.

Scores

CVSS v3 9.8
EPSS 0.0109
EPSS Percentile 78.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-178
Status published
Products (2)
novell/edirectory 8.6.2
novell/edirectory 8.7
Published Dec 31, 2002
Tracked Since Feb 18, 2026