>> Novell Netware Xsession Server Console Access Vulnerability
Title : Novell Netware Xsession Server Console Access Vulnerability VUPEN ID : VUPEN/ADV-2005-0278 CVE ID : GENERIC-MAP-NOMATCH CWE ID : CWE-
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-03-18
Technical Description
A new vulnerability was identified in Novell Netware, which may be exploited by attackers to gain access to the server Console. The problem is that Netware automatically redirects the xwindows session to a client via http using an improper connection method, which may be exploited to gain access to the GUI without authentication.