Novell.eDirectory.MSDOS.Device.Name.DoS

Release DateNov 24, 2006
SeverityCritical
ImpactThis vulnerability may cause a DoS.
DescriptionNovell eDirectory allows remote attackers to cause a denial of service (application crash) via a URL containing an MS-DOS device name such as AUX, CON, PRN, COM1, or LPT1.
Affected ProductsNovell eDirectory 8.7.3 and below.
Recommended ActionsNovell has fixed this issue,please update it now.
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1729
Reference: VID-13600