The Identity Server in Novell Access Manager prior to 3.1 SP1 allows attackers with disabled Active Directory accounts to authenticate using X.509 authentication, which bypasses intended access restrictions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
novell access manager 3 |
||
novell access manager |