CVE-2007-6735

NWFTPD.nlm <5.08.06 - Info Disclosure

Title source: llm
STIX 2.1

Description

NWFTPD.nlm before 5.08.06 in the FTP server in Novell NetWare does not properly handle partial matches for container names in the FTPREST.TXT file, which allows remote attackers to bypass intended access restrictions via an FTP session.

References (2)

Core 2
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.novell.com/show_bug.cgi?id=260459

Scores

EPSS 0.0013
EPSS Percentile 32.1%

Details

CWE
CWE-264
Status published
Products (2)
novell/netware
novell/netware_ftp_server
Published Apr 05, 2010
Tracked Since Feb 18, 2026