The Identity Server in Novell Access Manager before 3.1 SP1 allows attackers with disabled Active Directory accounts to authenticate using X.509 authentication, which bypasses intended access restrictions.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-05-26 11:30
Updated : 2010-05-26 21:00
NVD link : CVE-2009-4879
Mitre link : CVE-2009-4879
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
novell
- access_manager