CVE-2003-1593

Novell NetWare FTP Server - Unauthenticated Access Control Bypass via Domain-Name Login Restriction

Title source: llm
STIX 2.1

Description

NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote attackers to bypass intended access control via an FTP connection.

References (1)

Core 1
Core References

Scores

EPSS 0.0013
EPSS Percentile 32.7%

Details

CWE
CWE-264
Status published
Products (3)
novell/netware 6.0 (4 CPE variants)
novell/netware 6.5
novell/netware_ftp_server
Published Apr 05, 2010
Tracked Since Feb 18, 2026