Vulnerability Name: | CVE-2016-5763 (CCN-120130) | ||||||||||||
Assigned: | 2016-11-15 | ||||||||||||
Published: | 2016-11-15 | ||||||||||||
Updated: | 2016-11-28 | ||||||||||||
Summary: | Vulnerability in Novell Open Enterprise Server (OES2015 SP1 before Scheduled Maintenance Update 10992, OES2015 before Scheduled Maintenance Update 10990, OES11 SP3 before Scheduled Maintenance Update 10991, OES11 SP2 before Scheduled Maintenance Update 10989) might allow authenticated remote attackers to perform unauthorized file access and modification. | ||||||||||||
CVSS v3 Severity: | 9.1 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N) 7.9 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C)
5.7 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N)
| ||||||||||||
Vulnerability Type: | CWE-254 | ||||||||||||
Vulnerability Consequences: | Bypass Security | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-5763 Source: CCN Type: Novell Web Site OES Release Notes - September 2016 Update - OES 2015-SP1 10992 Source: CONFIRM Type: Patch, Release Notes http://download.novell.com/Download?buildid=3Ho1yp5JOXA~ Source: CCN Type: Novell Web Site OES Release Notes - September 2016 OES 11 SP2 Scheduled Maintenance Update 10989 Source: CONFIRM Type: Patch, Release Notes http://download.novell.com/Download?buildid=dfqmrymc0Rg~ Source: CCN Type: Novell Web Site OES Release Notes - September 2016 Update - OES 2015 10990 Source: CONFIRM Type: Patch, Release Notes http://download.novell.com/Download?buildid=Fj0Hdns7mxA~ Source: CCN Type: Novell Web Site OES Release Notes - September 2016 OES11 SP3 Scheduled Maintenance Update 10991 Source: CONFIRM Type: Patch, Release Notes http://download.novell.com/Download?buildid=s9_RxhgC8KU~ Source: BID Type: UNKNOWN 94348 Source: CCN Type: BID-94348 Novell Open Enterprise Server CVE-2016-5763 Remote Security Bypass Vulnerability Source: XF Type: UNKNOWN novell-cve20165763-sec-bypass(120130) | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |