NetIQ Identity Manager prior to 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user administrators to potentially execute code or mislead users.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
netiq identity manager |