CVE-2003-1596

Novell NetWare FTP Server < 5.03.12 - Unauthenticated Filesystem Access Bypass via NFS Gateway Home Directory

Title source: llm
STIX 2.1

Description

NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.

References (1)

Core 1
Core References

Scores

EPSS 0.0011
EPSS Percentile 28.9%

Details

CWE
CWE-264
Status published
Products (12)
novell/netware 5.1
novell/netware 6.0
novell/netware 6.5
novell/netware_ftp_server 5.01i
novell/netware_ftp_server 5.01o
novell/netware_ftp_server 5.01w
novell/netware_ftp_server 5.01y
novell/netware_ftp_server 5.02b
novell/netware_ftp_server 5.02i
novell/netware_ftp_server 5.02r
... and 2 more
Published Apr 05, 2010
Tracked Since Feb 18, 2026