Webshell Upload Vulnerability in Novell iManager and NetIQ iManager
CVE-2017-7432

9.8CRITICAL

Summary

A serious webshell upload vulnerability exists in Novell iManager versions prior to 2.7 SP7 Patch 10 HF1 and NetIQ iManager versions prior to 3.0.3.1. This vulnerability allows an attacker to upload malicious webshells, enabling unauthorized access and potential control over affected systems. Users are strongly urged to apply the latest patches to mitigate this threat and ensure the security of their systems.

Affected Version(s)

Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.