CVE-2005-1543
Last modified
CVE-2005-1543 is a vulnerability of currently unknown severity. Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote attackers to execute arbitrary code via (1) unspecified vectors, (2) type 1 authentication requests, and (3) type 2 authentication requests.. EPSS estimates a 66.88% chance of exploitation in the next 30 days.
Description
Multiple stack-based and heap-based buffer overflows in Remote Management authentication (zenrem32.exe) on Novell ZENworks 6.5 Desktop and Server Management, ZENworks for Desktops 4.x, ZENworks for Servers 3.x, and Remote Management allows remote attackers to execute arbitrary code via (1) unspecified vectors, (2) type 1 authentication requests, and (3) type 2 authentication requests.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Novell | Zenworks | 6.5 | — |
| Novell | Zenworks Desktops | 3.2 | Sp2 |
| Novell | Zenworks Desktops | 4.0 | — |
| Novell | Zenworks Desktops | 4.0.1 | — |
| Novell | Zenworks Remote Management | All versions | — |
| Novell | Zenworks Server Management | 6.5 | — |
| Novell | Zenworks Servers | 3.2 | — |
References
- http://www.rem0te.com/public/images/zen.pdfVendor Advisory
- http://www.rem0te.com/public/images/zen.pdfVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-1543?
How severe is CVE-2005-1543?
How do I fix CVE-2005-1543?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-1526PHP remote file inclusion vulnerability in config_settings.p…
- CVE-2005-1527Eval injection vulnerability in awstats.pl in AWStats 6.4 an…
- CVE-2005-1528Untrusted search path vulnerability in the crttrap command i…
- CVE-2005-1530Sophos Anti-Virus 5.0.1, with "Scan inside archive files" en…
- CVE-2005-1531Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not…
- CVE-2005-1532Firefox before 1.0.4 and Mozilla Suite before 1.7.8 do not p…
- CVE-2005-1544Stack-based buffer overflow in libTIFF before 3.7.2 allows r…
- CVE-2005-1545Integer overflow in the ELF parser in HT Editor before 0.8.0…
- CVE-2005-1546Buffer overflow in the PE parser in HT Editor before 0.8.0 a…
- CVE-2005-1547Heap-based buffer overflow in the demo version of Bakbone Ne…
- CVE-2005-1548SQL injection vulnerability in index.php in Advanced Guestbo…
- CVE-2005-1549Directory traversal vulnerability in easymsgb.pl in Easy Mes…
Are you affected by CVE-2005-1543?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
