This module exploits a remote stack-based buffer overflow in Novell iManager by creating a class with an overly long name. In order to exploit this vulnerability, you must be able to login to any Novell eDirectory server via the target iManager application. This exploit will bypass DEP on Windows 2003 platforms by disabling it in the context of the current process.
This module exploits a Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter. This allows remote attackers to upload and execute files via a 130 /FSF/CMD request with a .. (dot dot) in a FILE element of an FSFUI record. This vulnerability can be exploited remotely by sending a specially crafted packet to port TCP/3037.