Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
BID:12766
Info
Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
| Bugtraq ID: | 12766 |
| Class: | Access Validation Error |
| CVE: |
CVE-2005-0746 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2005 12:00AM |
| Updated: | Jul 12 2009 10:56AM |
| Credit: | This issue was reported by the vendor. |
| Vulnerable: |
Novell iChain Server 2.3 SP2 Novell iChain Server 2.3 Novell iChain Server 2.2.113 Novell iChain Server 2.2 SP3 Novell iChain Server 2.2 SP2 Novell iChain Server 2.2 SP1 Novell iChain Server 2.2 FP1a Novell iChain Server 2.2 FP1 Novell iChain Server 2.2 |
| Not Vulnerable: | |
Discussion
Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
Novell iChain Mini FTP server is reported prone to a remote path disclosure vulnerability.
This issue can allow an unauthorized attacker to disclose the iChain FTP server path.
The information gathered through the exploitation of this issue may aid in other attacks against a vulnerable computer.
Novell iChain 2.2, 2.3, and .3 Support Pack 2 are reported vulnerable.
Novell iChain Mini FTP server is reported prone to a remote path disclosure vulnerability.
This issue can allow an unauthorized attacker to disclose the iChain FTP server path.
The information gathered through the exploitation of this issue may aid in other attacks against a vulnerable computer.
Novell iChain 2.2, 2.3, and .3 Support Pack 2 are reported vulnerable.
Exploit / POC
Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
Solution:
Novell has released Technical Information Document 10096886 to address this issue. Please see the document in Web references for more information.
Solution:
Novell has released Technical Information Document 10096886 to address this issue. Please see the document in Web references for more information.
References
Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability
References:
References:
- iChain Homepage (Novell)
- TID10096886 - iChain Mini FTP Server (Novell)