← Vulnerability feed

Vulnerability record · CVE-2011-2750 · published 17 July 2011

CVE-2011-2750: Novell file reporter vulnerability

Novell · File Reporter

NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD.

5.0 CVSS 2.0 Medium EPSS 17% · top 3.1% CWE-399 · CWE-399
5.0CVSS 2.0 base score
17%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
10References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2011-2750 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2012-4956Novell file reporter memory buffer overflow vulnerabilityHeap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL …EPSS 38%10.0CVE-2012-4959Novell File Reporter NFRAgent.exe path traversal allows remote file upload and executionNFRAgent.exe in Novell File Reporter 1.0.2 is vulnerable to directory traversal. A remote attacker can send a crafted 130 /FSF/CMD request containing…EPSS 71%analysed10.0CVE-2011-2220Novell file reporter engine memory buffer overflow vulnerabilityStack-based buffer overflow in NFREngine.exe in Novell File Reporter Engine before 1.0.2.53, as used in Novell File Reporter and other products, allo…EPSS 16%10.0CVE-2011-0994Novell file reporter memory buffer overflow vulnerabilityStack-based buffer overflow in NFRAgent.exe in Novell File Reporter (NFR) before 1.0.2 allows remote attackers to execute arbitrary code via unspecif…EPSS 18%7.8CVE-2012-4957Novell File Reporter NFRAgent.exe path traversal arbitrary file readNFRAgent.exe in Novell File Reporter 1.0.2 contains an absolute path traversal flaw (CWE-22). A remote attacker can send a /FSF/CMD request with a fu…EPSS 68%analysed7.8CVE-2012-4958Novell File Reporter NFRAgent.exe directory traversal file readNFRAgent.exe in Novell File Reporter 1.0.2 mishandles a 126 /FSF/CMD request containing a .. (dot dot) sequence in the FILE element of an FSFUI recor…EPSS 74%analysed8.8CVE-2010-0806Microsoft Internet Explorer Peer Objects use-after-free allows remote code executionInternet Explorer 6, 6 SP1 and 7 contain a use-after-free in the Peer Objects component (iepeers.dll), where an object is accessed after deletion, le…KEVEPSS 82%analysed5.9CVE-2018-0180Cisco IOS Login Block feature denial-of-service via crafted login attemptsMultiple flaws in the Login Enhancements (Login Block) feature of Cisco IOS Software let an unauthenticated remote attacker trigger a reload of the d…KEVEPSS 4.9%analysed

Source: NIST National Vulnerability Database (record CVE-2011-2750), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.