Novell iManager 2.7

CPE Details

Novell iManager 2.7
2.7
2013-05-16
15h11 +00:00
2013-05-16
16h37 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:novell:imanager:2.7:*:*:*:*:*:*:*

Informations

Vendor

novell

Product

imanager

Version

2.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2017-7430 2017-05-03 03h13 +00:00 Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework.
6.1
Medium
CVE-2017-7431 2017-05-03 03h13 +00:00 Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management.
8.8
High
CVE-2017-7432 2017-05-03 03h13 +00:00 Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability.
9.8
Critical
CVE-2013-1088 2013-04-24 08h00 +00:00 Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed within an Apache Tomcat container.
6.8
CVE-2011-4188 2012-04-09 18h00 +00:00 Buffer overflow in the Create Attribute function in jclient in Novell iManager 2.7.4 before patch 4 allows remote authenticated users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted EnteredAttrName parameter, a related issue to CVE-2010-1929.
4
CVE-2009-4486 2010-01-08 17h00 +00:00 Stack-based buffer overflow in the eDirectory plugin in Novell iManager before 2.7.3 allows remote attackers to execute arbitrary code via vectors that trigger long arguments to an unspecified sub-application, related to importing and exporting from a schema.
7.5