VendorsNetiqimanager3.0.2
Vulnerabilities

Netiq iManager 3.0.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2017-7432
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability.
Published 2017-05-03 · Modified
9.8EPSS 0.015
CVE-2017-7431
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management.
Published 2017-05-03 · Modified
8.8EPSS 0.006
CVE-2017-5189
private SSL key embedded in JAR file in iManager
Published 2018-03-02 · Modified
7.5EPSS 0.012
CVE-2017-5186
Novell iManager 2.7 before SP7 Patch 9, NetIQ iManager 3.x before 3.0.2.1, Novell eDirectory 8.8.x before 8.8 SP8 Patch 9 Hotfix 2, and NetIQ eDirectory 9.x before 9.0.2 Hotfix 2 (9.0.2.2) use the deprecated MD5 hashing algorithm in a communications certificate.
Published 2017-04-27 · Modified
7.5EPSS 0.006
CVE-2017-7430
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework.
Published 2017-05-03 · Modified
6.1EPSS 0.010
CVE-2017-7428
NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat.
Published 2017-05-03 · Modified
5.3EPSS 0.013