The Fan-Out Linux and UNIX receiver scripts in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors involving certain environment variables and "code injection."
References
Link | Resource |
---|---|
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2974421.htm | Patch |
http://www.securityfocus.com/bid/20016 | Patch Third Party Advisory VDB Entry |
http://secunia.com/advisories/21888 | Vendor Advisory |
http://securitytracker.com/id?1016853 | Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2006/3607 | Third Party Advisory |
Configurations
Information
Published : 2006-09-14 15:07
Updated : 2018-09-27 14:30
NVD link : CVE-2006-4803
Mitre link : CVE-2006-4803
JSON object : View
CWE
Products Affected
netiq
- identity_manager