NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2018-03-02 20:29
Updated : 2023-11-07 02:49
NVD link : CVE-2017-5189
Mitre link : CVE-2017-5189
CVE.ORG link : CVE-2017-5189
JSON object : View
Products Affected
netiq
- imanager