ID

VAR-E-200702-0526


CVE

cve_id:CVE-2007-1119

Trust: 0.3

sources: BID: 22686

TITLE

Novell Zenworks Desktop Management Image Upload Security Bypass Vulnerability

Trust: 0.3

sources: BID: 22686

DESCRIPTION

Novell Zenworks Desktop Management is prone to a vulnerability that allows attackers to bypass security controls and to upload image files to directories that they normally would not have write access to.
Novell Zenworks Desktop Management version 7 Support Pack 1 - ZDM7 SP1 and ZDM7 SP1 Imaging are vulnerable to this issue.

Trust: 0.3

sources: BID: 22686

AFFECTED PRODUCTS

vendor:novellmodel:zenworks desktop management 7.zdm7 sp1 imagingscope: - version: -

Trust: 0.3

vendor:novellmodel:zenworks desktop management 7.zdm7 sp1scope: - version: -

Trust: 0.3

vendor:novellmodel:zenworks desktop management 7.zdm7sp1hp3scope:neversion: -

Trust: 0.3

sources: BID: 22686

EXPLOIT

Attackers can exploit this issue from a bash prompt.

Trust: 0.3

sources: BID: 22686

PRICE

Free

Trust: 0.3

sources: BID: 22686

TYPE

Design Error

Trust: 0.3

sources: BID: 22686

CREDITS

The vendor disclosed this issue.

Trust: 0.3

sources: BID: 22686

EXTERNAL IDS

db:NVDid:CVE-2007-1119

Trust: 0.3

db:BIDid:22686

Trust: 0.3

sources: BID: 22686

REFERENCES

url:https://secure-support.novell.com/kanisaplatform/publishing/408/3563780_f.sal_public.html

Trust: 0.3

url:https://secure-support.novell.com/kanisaplatform/publishing/650/3484245_f.sal_public.html

Trust: 0.3

url:http://www.novell.com/products/zenworks/desktops/overview.html

Trust: 0.3

sources: BID: 22686

SOURCES

db:BIDid:22686

LAST UPDATE DATE

2022-07-27T09:28:47.593000+00:00


SOURCES UPDATE DATE

db:BIDid:22686date:2015-05-12T19:34:00

SOURCES RELEASE DATE

db:BIDid:22686date:2007-02-23T00:00:00