VulnerabilityModified
CVE-2008-0663
Novell Challenge Response Client (LCM) 2.7.5 and earlier, as used with Novell Client for Windows 4.91 SP4, allows users with physical access to a locked system to obtain contents of the clipboard by pasting the contents into the Challenge Question field.
LOW 2.1EPSS 0.33%
Does this matter?
Lower severity and a low EPSS score (0.33%). Track it; it rarely justifies an emergency change on its own.
Description
Novell Challenge Response Client (LCM) 2.7.5 and earlier, as used with Novell Client for Windows 4.91 SP4, allows users with physical access to a locked system to obtain contents of the clipboard by pasting the contents into the Challenge Question field.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.33% probability · 27th percentile
- CISA KEV
- Not listed
- Affected
- novell/challenge response client · novell/novell client for windows
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/28792Vendor Advisory
- http://www.securityfocus.com/bid/27631
- http://www.securitytracker.com/id?1019304
- http://www.vupen.com/english/advisories/2008/0423/references
- https://secure-support.novell.com/KanisaPlatform/Publishing/686/3726376_f.SAL_Public.html
- http://secunia.com/advisories/28792Vendor Advisory
- http://www.securityfocus.com/bid/27631
- http://www.securitytracker.com/id?1019304
- http://www.vupen.com/english/advisories/2008/0423/references
- https://secure-support.novell.com/KanisaPlatform/Publishing/686/3726376_f.SAL_Public.html
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.