CVE-2005-1543
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 66.1%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote attackers to execute arbitrary code via (1) unspecified vectors, (2) type 1 authentication requests, and (3) type 2 authentication requests.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 66.10% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- novell/zenworks · novell/zenworks desktops · novell/zenworks remote management · novell/zenworks server management · novell/zenworks servers
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=111645317713662&w=2
- http://secunia.com/advisories/15433
- http://securitytracker.com/id?1014005
- http://support.novell.com/cgi-bin/search/searchtid.cgi?/10097644.htm
- http://www.rem0te.com/public/images/zen.pdfVendor Advisory
- http://www.securityfocus.com/bid/13678
- http://www.vupen.com/english/advisories/2005/0571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20639
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20644
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20645
- http://marc.info/?l=bugtraq&m=111645317713662&w=2
- http://secunia.com/advisories/15433
- http://securitytracker.com/id?1014005
- http://support.novell.com/cgi-bin/search/searchtid.cgi?/10097644.htm
- http://www.rem0te.com/public/images/zen.pdfVendor Advisory
- http://www.securityfocus.com/bid/13678
- http://www.vupen.com/english/advisories/2005/0571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20639
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20644
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20645
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.