CVE-2017-9267: Novell Edirectory

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations.

Affected products

  • Novell Edirectory: before 9.0.3.1 (fixed in 9.0.3.1)

Published 2018-03-02. Last modified 2026-06-17.