CVE-2017-5189

NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netiq:imanager:2.7.6:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.5:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p4:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p5:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p6:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p7:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.4:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7.10:hf1:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7.10:hf2:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.3:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.2:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.1:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p8:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p9:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p10:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p11:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp1:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp2:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp3:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp4:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.2:p1:*:*:*:*:*:*

Information

Published : 2018-03-02 12:29

Updated : 2019-10-09 16:28


NVD link : CVE-2017-5189

Mitre link : CVE-2017-5189


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

netiq

  • imanager