CVE-2012-4956

Novell File Reporter <1.0.2 - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2012-4956. PoCs published by juan vazquez, including Metasploit module auxiliary/dos/http/novell_file_reporter_heap_bof.

AI-analyzed exploit summary This Metasploit module exploits a heap overflow in Novell File Reporter (NFR) Agent by sending a maliciously crafted XML request with excessive VOL elements, leading to a denial-of-service (DoS) condition.

Description

Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL elements in an SRS record.

Exploits (1)

metasploit WORKING POC
by juan vazquez · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/dos/http/novell_file_reporter_heap_bof.rb

This Metasploit module exploits a heap overflow in Novell File Reporter (NFR) Agent by sending a maliciously crafted XML request with excessive VOL elements, leading to a denial-of-service (DoS) condition.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Novell File Reporter Agent 1.0.4.3 (File Reporter 1.0.2)
No auth needed
Prerequisites: Network access to the target NFR Agent service on port 3037
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/273371
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/87574

Scores

EPSS 0.6858
EPSS Percentile 98.6%

Details

CWE
CWE-119
Status published
Products (1)
novell/file_reporter 1.0.2
Published Nov 18, 2012
Tracked Since Feb 18, 2026