ncpfs records
8 published records for vendor ncpfs.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 12.5%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-20 Improper Input Validation1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2005-0014No exploit | Buffer overflow in ncplogin in ncpfs before 2.2.6 allows remote malicious NetWare servers to execute arbitrary code on the NetWare client.ncpfs · ncpfs | High7.5 | — | 2.9% | May 2, 2005 |
28Monitor | CVE-2005-0013No exploit | nwclient.c in ncpfs before 2.2.6 does not drop root privileges before executing utilities using the NetWare client functions, which allows lncpfs · ncpfs | High7.2 | — | 0.6% | May 2, 2005 |
28Monitor | CVE-2004-1079No exploit | Buffer overflow in (1) ncplogin and (2) ncpmap in nwclient.c for ncpfs 2.2.4, and possibly other versions, may allow local users to gain princpfs · ncpfs | High7.2 | — | 0.4% | Jan 10, 2005 |
17Monitor | CVE-2010-0788Proof of concept | ncpfs 2.2.6 allows local users to cause a denial of service, obtain sensitive information, or possibly gain privileges via symlink attacks incpfs · ncpfs · CWE-59 | Medium4.4 | — | 0.7% | Mar 2, 2010 |
17Monitor | CVE-2011-1680No exploit | ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecifncpfs · ncpfs · CWE-264 | Medium4.4 | — | 0.5% | Apr 9, 2011 |
13Monitor | CVE-2011-1679No exploit | ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file wncpfs · ncpfs · CWE-20 | Low3.3 | — | 0.4% | Apr 9, 2011 |
8Monitor | CVE-2010-0791No exploit | The (1) ncpmount, (2) ncpumount, and (3) ncplogin programs in ncpfs 2.2.6 do not properly create lock files, which allows local users to cauncpfs · ncpfs · CWE-264 | Low2.1 | — | 0.4% | Mar 10, 2010 |
8Monitor | CVE-2010-0790No exploit | sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the results of privileged file-access attempts,ncpfs · ncpfs · CWE-200 | Low2.1 | — | 0.3% | Mar 10, 2010 |
- CVE-2005-001431Monitor
Buffer overflow in ncplogin in ncpfs before 2.2.6 allows remote malicious NetWare servers to execute arbitrary code on the NetWare client.
HighCVSS 7.5No exploitEPSS 3%ncpfs · ncpfsMay 2, 2005
- CVE-2005-001328Monitor
nwclient.c in ncpfs before 2.2.6 does not drop root privileges before executing utilities using the NetWare client functions, which allows l
HighCVSS 7.2No exploitEPSS 1%ncpfs · ncpfsMay 2, 2005
- CVE-2004-107928Monitor
Buffer overflow in (1) ncplogin and (2) ncpmap in nwclient.c for ncpfs 2.2.4, and possibly other versions, may allow local users to gain pri
HighCVSS 7.2No exploitEPSS 0%ncpfs · ncpfsJan 10, 2005
- CVE-2010-078817Monitor
ncpfs 2.2.6 allows local users to cause a denial of service, obtain sensitive information, or possibly gain privileges via symlink attacks i
MediumCVSS 4.4Proof of conceptEPSS 1%ncpfs · ncpfsMar 2, 2010
- CVE-2011-168017Monitor
ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecif
MediumCVSS 4.4No exploitEPSS 0%ncpfs · ncpfsApr 9, 2011
- CVE-2011-167913Monitor
ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file w
LowCVSS 3.3No exploitEPSS 0%ncpfs · ncpfsApr 9, 2011
- CVE-2010-07918Monitor
The (1) ncpmount, (2) ncpumount, and (3) ncplogin programs in ncpfs 2.2.6 do not properly create lock files, which allows local users to cau
LowCVSS 2.1No exploitEPSS 0%ncpfs · ncpfsMar 10, 2010
- CVE-2010-07908Monitor
sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the results of privileged file-access attempts,
LowCVSS 2.1No exploitEPSS 0%ncpfs · ncpfsMar 10, 2010