CVE-2004-2734

Novell Netware - Authentication Bypass

Title source: rule

Description

webadmin-apache.conf in Novell Web Manager of Novell NetWare 6.5 uses an uppercase Alias tag with an inconsistent lowercase directory tag for a volume, which allows remote attackers to bypass access control to the WEB-INF folder.

Scores

EPSS 0.0156
EPSS Percentile 81.3%

Classification

CWE
CWE-287
Status draft

Affected Products (4)

novell/netware
novell/netware
novell/netware
novell/netware

Timeline

Published Dec 31, 2004
Tracked Since Feb 18, 2026