CVE-2011-2750

Novell File Reporter < 1.0.4.2 - Resource Management Error

Title source: rule

Description

NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD.

Exploits (1)

metasploit WORKING POC
by Luigi Auriemma, juan vazquez · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/admin/http/novell_file_reporter_filedelete.rb

Scores

EPSS 0.7081
EPSS Percentile 98.7%

Details

CWE
CWE-399
Status published
Products (4)
novell/file_reporter 1.0.1
novell/file_reporter 1.0.1.1
novell/file_reporter 1.0.2
novell/file_reporter < 1.0.4.2
Published Jul 17, 2011
Tracked Since Feb 18, 2026