CVE-2010-4323

Novell Zenworks Configuration Manager < 11.0 - Memory Corruption

Title source: rule

Description

Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, and earlier versions, allows remote attackers to execute arbitrary code via a long TFTP request.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Francis Provencher · perldoswindows
https://www.exploit-db.com/exploits/16191

Scores

EPSS 0.5192
EPSS Percentile 97.9%

Details

CWE
CWE-119
Status published
Products (3)
novell/zenworks_configuration_manager 10.3.1
novell/zenworks_configuration_manager 10.3.2
novell/zenworks_configuration_manager < 11.0
Published Feb 19, 2011
Tracked Since Feb 18, 2026