CVE-2004-2106

Novell NetWare Enterprise Web Server <6.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to list directories via a direct request to (1) /com/, (2) /com/novell/, (3) /com/novell/webaccess, or (4) /ns-icons/.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/21749
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/13404
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107487862304440&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/13403
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/13402

Scores

EPSS 0.0024
EPSS Percentile 46.9%

Details

Status published
Products (2)
novell/netware 5.1
novell/netware 6.0
Published Dec 31, 2004
Tracked Since Feb 18, 2026