Known Vulnerabilities for products from Netiq

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Netiq".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-11648 An information leakage exists in Micro Focus NetIQ Self Service Password Reset Software all versions prior to version 4.4. Th... 7.5 - HIGH 2019-06-24 2023-11-07
CVE-2018-12462 NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities. 6.1 - MEDIUM 2018-07-10 2023-11-07
CVE-2018-12461 Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation. 7.5 - HIGH 2018-07-10 2023-11-07
CVE-2018-7692 Unvalidated redirect vulnerability in in NetIQ eDirectory before 9.1.1 HF1. 6.1 - MEDIUM 2018-08-09 2023-11-07
CVE-2018-7686 Information leakage vulnerability in NetIQ eDirectory before 9.1.1 HF1 due to shared memory usage. 7.5 - HIGH 2018-08-09 2023-11-07
CVE-2018-7678 A cross site scripting vulnerability exist in the Administration Console in NetIQ Access Manager (NAM) 4.3 and 4.4. 4.8 - MEDIUM 2018-03-14 2023-11-07
CVE-2018-7677 A CSRF exposure exists in NetIQ Access Manager (NAM) 4.4 Identity Server component. 8.8 - HIGH 2018-03-14 2023-11-07
CVE-2018-7676 The NetIQ Identity Manager, in versions prior to 4.7, userapp with log / trace enabled may leak sensitive information. 5.9 - MEDIUM 2018-03-28 2023-11-07
CVE-2018-7675 In NetIQ Sentinel before 8.1.x, a Sentinel user is logged into the Sentinel Web Interface. After performing some tasks within... 5.3 - MEDIUM 2018-03-07 2023-11-07
CVE-2018-7674 The NetIQ Identity Manager user console, in versions prior to 4.7, is susceptible to URL redirection. 6.1 - MEDIUM 2018-03-28 2023-11-07
CVE-2018-7673 The NetIQ Identity Manager communication channel, in versions prior to 4.7, is susceptible to a DoS attack. 7.5 - HIGH 2018-03-26 2023-11-07
CVE-2018-1350 The NetIQ Identity Manager driver log file, in versions prior to 4.7, provides details that could aid in system enumeration. 5.3 - MEDIUM 2018-03-26 2023-11-07
CVE-2018-1349 The NetIQ Identity Manager driver log file, in versions prior to 4.7, provides details that could aid in system or configurat... 5.3 - MEDIUM 2018-03-26 2023-11-07
CVE-2018-1348 NetIQ Identity Manager driver, in versions prior to 4.7, allows for an SSL handshake renegotiation which could result in a MI... 7.4 - HIGH 2018-03-26 2023-11-07
CVE-2018-1347 The administrative web interface in NetIQ iManager, versions prior to 3.1, are vulnerable to reflected cross site scripting. 6.1 - MEDIUM 2018-03-21 2023-11-07
CVE-2018-1346 Addresses denial of service attack to eDirectory versions prior to 9.1. 7.5 - HIGH 2018-03-21 2023-11-07
CVE-2018-1345 NetIQ iManager, versions prior to 3.1, under some circumstances could be susceptible to an elevation of privilege attack. 8.8 - HIGH 2018-03-21 2023-11-07
CVE-2018-1344 Addresses potential communication downgrade attack in NetIQ iManager versions prior to 3.1 8.6 - HIGH 2018-03-21 2023-11-07
CVE-2018-1343 PAM exposure enabling unauthenticated access to remote host 9.8 - CRITICAL 2018-03-06 2023-11-07
CVE-2018-1342 A Vulnerability exists on Admin Console where an attacker can upload files to the Admin Console server, and potentially execu... 9.8 - CRITICAL 2018-01-26 2023-11-07

Known software with vulnerabilities from Netiq

Type Vendor Product Version
ApplicationNetiqAccess Manager4.0
ApplicationNetiqAnalysis Center2.5.0
ApplicationNetiqAppmanager Agent7.0.10160.0
ApplicationNetiqAppmanager Console7.0.10160.0
ApplicationNetiqAppmanager Control Center7.0.10160.0
ApplicationNetiqAppmanager Diagnostic Console2.1.0.0
ApplicationNetiqAppmanager Management Server7.0.41053.16
ApplicationNetiqAppmanager Repository Installation7.0.10160.0
ApplicationNetiqAppmanager Repository Slovenia Qdb7.0.11248.0
ApplicationNetiqAppmanager Web Management Server7.0.41039.0
ApplicationNetiqCore Services5.7.0.390
ApplicationNetiqEdirectory8.8.6.0
ApplicationNetiqEndpoint5.0.3186
ApplicationNetiqIdentity Reporting5.5
ApplicationNetiqImanager2.7.7
ApplicationNetiqNamespace Server2.54
ApplicationNetiqPrivileged User Manager2.3.0
ApplicationNetiqSecure Configuration Manager5.7.0.390
ApplicationNetiqSecurity Manager6.0.0.194
ApplicationNetiqSecurity Manager Agent6.0.0.194