Webshell Upload Vulnerability in Novell iManager and NetIQ iManager
CVE-2017-7432
9.8CRITICAL
Key Information:
- Vendor
- Novell
- Vendor
- CVE Published:
- 3 May 2017
Summary
A serious webshell upload vulnerability exists in Novell iManager versions prior to 2.7 SP7 Patch 10 HF1 and NetIQ iManager versions prior to 3.0.3.1. This vulnerability allows an attacker to upload malicious webshells, enabling unauthorized access and potential control over affected systems. Users are strongly urged to apply the latest patches to mitigate this threat and ensure the security of their systems.
Affected Version(s)
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved