Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
netiq edirectory vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2012-0432
Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x prior to 8.8.7.2 allows remote malicious users to have an unspecified impact via unknown vectors.
Microfocus Edirectory 8.8.7.0
Microfocus Edirectory 8.8.7.1
2 EDB exploits
7.5
CVSSv2
CVE-2017-9285
NetIQ eDirectory prior to 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services.
Netiq Edirectory 9.0
Microfocus Edirectory
6.5
CVSSv2
CVE-2017-7429
The certificate upload in NetIQ eDirectory PKI plugin prior to 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated malicious users to execute JSP applets on the iManager server.
Netiq Edirectory 8.8.8
Microfocus Edirectory
6.4
CVSSv2
CVE-2012-0430
Unspecified vulnerability in NetIQ eDirectory 8.8.6.x prior to 8.8.6.7 and 8.8.7.x prior to 8.8.7.2 on Windows allows remote malicious users to obtain an administrator cookie and bypass authorization checks via unknown vectors.
Microfocus Edirectory 8.8.6.0
Microfocus Edirectory 8.8.6.6
Microfocus Edirectory 8.8.6.5
Microfocus Edirectory 8.8.6.2
Microfocus Edirectory 8.8.6.1
Microfocus Edirectory 8.8.6.4
Microfocus Edirectory 8.8.6.3
Microfocus Edirectory 8.8.7.0
Microfocus Edirectory 8.8.7.1
5.8
CVSSv2
CVE-2018-7692
Unvalidated redirect vulnerability in in NetIQ eDirectory prior to 9.1.1 HF1.
Microfocus Edirectory
5
CVSSv2
CVE-2016-9166
NetIQ eDirectory versions before 9.0.2, under some circumstances, could be susceptible to downgrade of communication security.
Microfocus Netiq Edirectory
Microfocus Netiq Edirectory 9.0
5
CVSSv2
CVE-2018-7686
Information leakage vulnerability in NetIQ eDirectory prior to 9.1.1 HF1 due to shared memory usage.
Microfocus Edirectory
5
CVSSv2
CVE-2018-12461
Fixed issues with NetIQ eDirectory before 9.1.1 when checking certificate revocation.
Netiq Edirectory 9.1.1
5
CVSSv2
CVE-2018-1346
Addresses denial of service attack to eDirectory versions before 9.1.
Netiq Edirectory
4.6
CVSSv2
CVE-2014-4509
The MKDQUOTESAFE function in the Fan-out driver scripts in Fan-Out Platform Services in Novell Identity Manager (aka IDM) 4.0.2 allows local users to execute arbitrary commands by leveraging eDirectory POSIX attribute changes to insert shell metacharacters.
Netiq Identity Manager 4.0.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3380
CVE-2024-1694
local file inclusion
CVE-2024-5645
CVE-2024-24919
XSS
CVE-2024-36774
CVE-2024-21306
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »