Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with OpenSSH, includes sensitive password information in the (1) NIOUTPUT.TXT and (2) NI.LOG log files, which might allow local users to obtain the passwords.
References
Link | Resource |
---|---|
http://secunia.com/advisories/11188 | Patch Vendor Advisory |
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2968534.htm | Patch Vendor Advisory |
http://www.securityfocus.com/bid/9934 | Patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15600 |
Configurations
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2017-07-11 01:31
NVD link : CVE-2004-2414
Mitre link : CVE-2004-2414
CVE.ORG link : CVE-2004-2414
JSON object : View
Products Affected
novell
- netware
CWE