CVE-2011-2221

Novell Data Synchronizer <1.2 - Auth Bypass

Title source: llm
STIX 2.1

Description

The Mobility Pack before 1.2 in Novell Data Synchronizer 1.x through 1.1.2 build 428 allows remote attackers to bypass WebAdmin authentication and obtain sensitive GroupWise information via unspecified vectors.

References (3)

Core 3
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/45527
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/49069

Scores

EPSS 0.0044
EPSS Percentile 63.3%

Details

CWE
CWE-264
Status published
Products (8)
novell/data_synchronizer 1.0.0
novell/data_synchronizer 1.1.0
novell/data_synchronizer 1.1.1
novell/data_synchronizer 1.1.2
novell/mobility_pack 1.0
novell/mobility_pack 1.1
novell/mobility_pack 1.1.1
novell/mobility_pack 1.1.2
Published Aug 09, 2011
Tracked Since Feb 18, 2026