Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in NetIQ Advanced Authentication versions prior to 6.3 SP4 Patch 1.
References
Link | Resource |
---|---|
https://www.netiq.com/documentation/advanced-authentication-63/advanced-authentication-releasenotes-6341/data/advanced-authentication-releasenotes-6341.html | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-07-12 04:15
Updated : 2021-07-15 06:59
NVD link : CVE-2021-22515
Mitre link : CVE-2021-22515
JSON object : View
CWE
CWE-863
Incorrect Authorization
Products Affected
microfocus
- netiq_advanced_authentication