CVE-2005-1543 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 66.1% (pctl 99)
Patch early
A public exploit exists.
Description
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote attackers to execute arbitrary code via (1) unspecified vectors, (2) type 1 authentication requests, and (3) type 2 authentication requests.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 66.1% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-05-25 |
| Last modified | 2026-06-16 |
Affected (5)
| Vendor | Product |
|---|---|
| novell | zenworks |
| novell | zenworks desktops |
| novell | zenworks remote management |
| novell | zenworks server management |
| novell | zenworks servers |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Novell ZENworks 6.5 - Desktop/Server Management Overflow (Metasploit) | 2010-07-25 |
| exploit-db | Novell ZENworks 6.5 - Desktop/Server Management Remote Stack Overflow (Metasploit) | 2005-08-12 |
References
- http://marc.info/?l=bugtraq&m=111645317713662&w=2
- http://secunia.com/advisories/15433
- http://securitytracker.com/id?1014005
- http://support.novell.com/cgi-bin/search/searchtid.cgi?/10097644.htm
- http://www.rem0te.com/public/images/zen.pdf
- http://www.securityfocus.com/bid/13678
- http://www.vupen.com/english/advisories/2005/0571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20639
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20644
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20645
- http://marc.info/?l=bugtraq&m=111645317713662&w=2
- http://secunia.com/advisories/15433
- http://securitytracker.com/id?1014005
- http://support.novell.com/cgi-bin/search/searchtid.cgi?/10097644.htm
- http://www.rem0te.com/public/images/zen.pdf
- http://www.securityfocus.com/bid/13678
- http://www.vupen.com/english/advisories/2005/0571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20639
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20644
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20645
→ the Explorer · watch your stack · NVD