PT-2017-17734 · Novell+1 · Novell Imanager+1
Published
2017-05-03
·
Updated
2019-10-03
·
CVE-2017-7432
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Novell iManager versions 2.7.x before 2.7 SP7 Patch 10 HF1
NetIQ iManager versions 3.x before 3.0.3.1
Description
The issue allows for a webshell upload, which can lead to unauthorized access and control of the system.
Recommendations
For Novell iManager versions 2.7.x before 2.7 SP7 Patch 10 HF1, update to 2.7 SP7 Patch 10 HF1 or later.
For NetIQ iManager versions 3.x before 3.0.3.1, update to 3.0.3.1 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netiq Imanager
Novell Imanager