VendorsNetiqimanagerall versions
Vulnerabilities

Netiq iManager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2017-7432
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability.
Published 2017-05-03 · Modified
9.8EPSS 0.015
CVE-2018-1345
iManager elevation of privilege
Published 2018-03-21 · Modified
8.8EPSS 0.006
CVE-2017-7431
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management.
Published 2017-05-03 · Modified
8.8EPSS 0.006
CVE-2018-1344
NetIQ iManager Communication Downgrade Attack
Published 2018-03-21 · Modified
8.6EPSS 0.009
CVE-2017-7425
Multiple Reflected XSS in iManager
Published 2017-11-06 · Modified
7.6EPSS 0.009
CVE-2017-5189
private SSL key embedded in JAR file in iManager
Published 2018-03-02 · Modified
7.5EPSS 0.012
CVE-2017-5186
Novell iManager 2.7 before SP7 Patch 9, NetIQ iManager 3.x before 3.0.2.1, Novell eDirectory 8.8.x before 8.8 SP8 Patch 9 Hotfix 2, and NetIQ eDirectory 9.x before 9.0.2 Hotfix 2 (9.0.2.2) use the deprecated MD5 hashing algorithm in a communications certificate.
Published 2017-04-27 · Modified
7.5EPSS 0.006
CVE-2022-38758
XSS vulnerabilities in iManager
Published 2023-01-25 · Modified
7.2EPSS 0.005
CVE-2017-7430
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework.
Published 2017-05-03 · Modified
6.1EPSS 0.010
CVE-2018-1347
NetIQ iManager, versions prior to 3.1, reflected XSS issue
Published 2018-03-21 · Modified
6.1EPSS 0.007
CVE-2018-12462
NetIQ iManager XSS vulnerabilities
Published 2018-07-10 · Modified
6.1EPSS 0.006
CVE-2017-7428
NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat.
Published 2017-05-03 · Modified
5.3EPSS 0.013