Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

private SSL key embedded in JAR file in iManager

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.
0
Attacker Value
Unknown

CVE-2017-7425

Disclosure Date: November 06, 2017 (last updated November 08, 2023)
Multiple potential reflected XSS issues exist in NetIQ iManager versions before 2.7.7 Patch 10 HF2 and 3.0.3.2.
0
Attacker Value
Unknown

CVE-2017-7432

Disclosure Date: May 03, 2017 (last updated November 08, 2023)
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability.
0
Attacker Value
Unknown

CVE-2017-7428

Disclosure Date: May 03, 2017 (last updated November 08, 2023)
NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat.
0
Attacker Value
Unknown

CVE-2017-7431

Disclosure Date: May 03, 2017 (last updated November 08, 2023)
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management.
0
Attacker Value
Unknown

CVE-2017-7430

Disclosure Date: May 03, 2017 (last updated November 08, 2023)
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework.
0