Novell / Imanager
16 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-7432 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability. | CRITICAL | 9.8 | May 3, 2017 |
| CVE-2017-7431 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management. | HIGH | 8.8 | May 3, 2017 |
| CVE-2017-7430 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework. | MEDIUM | 6.1 | May 3, 2017 |
| CVE-2017-5186 | Novell iManager 2.7 before SP7 Patch 9, NetIQ iManager 3.x before 3.0.2.1, Novell eDirectory 8.8.x before 8.8 SP8 Patch 9 Hotfix 2, and NetIQ eDirectory 9.x be… | HIGH | 7.5 | Apr 27, 2017 |
| CVE-2013-3268 | Novell iManager 2.7 before SP6 Patch 1 does not refresh a token after a logout action, which has unspecified impact and remote attack vectors. | HIGH | 10.0 | Apr 24, 2013 |
| CVE-2013-1088 | Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary use… | MEDIUM | 6.8 | Apr 24, 2013 |
| CVE-2011-4188 | Buffer overflow in the Create Attribute function in jclient in Novell iManager 2.7.4 before patch 4 allows remote authenticated users to cause a denial of serv… | MEDIUM | 4.0 | Apr 9, 2012 |
| CVE-2010-1930 | Off-by-one error in Novell iManager 2.7, 2.7.3, and 2.7.3 FTF2 allows remote attackers to cause a denial of service (daemon crash) via a long tree parameter in… | MEDIUM | 5.0 | Jun 28, 2010 |
| CVE-2010-1929 | Multiple stack-based buffer overflows in the jclient._Java_novell_jclient_JClient_defineClass@20 function in jclient.dll in the Tomcat web server in Novell iMa… | HIGH | 9.0 | Jun 28, 2010 |
| CVE-2009-4486 | Stack-based buffer overflow in the eDirectory plugin in Novell iManager before 2.7.3 allows remote attackers to execute arbitrary code via vectors that trigger… | HIGH | 7.5 | Jan 8, 2010 |
| CVE-2008-3488 | Unspecified vulnerability in Novell iManager before 2.7 SP1 (2.7.1) allows remote attackers to delete Plug-in Studio created Property Book Pages via unknown ve… | HIGH | 7.5 | Aug 6, 2008 |
| CVE-2005-1730 | Multiple vulnerabilities in the OpenSSL ASN.1 parser, as used in Novell iManager 2.0.2, allows remote attackers to cause a denial of service (NULL pointer dere… | HIGH | 9.3 | Mar 3, 2007 |
| CVE-2006-4517 | Novell iManager 2.5 and 2.0.2 allows remote attackers to cause a denial of service (crash) in the Tomcat server via a long TREE parameter in an HTTP POST, whic… | HIGH | 7.8 | Nov 1, 2006 |
| CVE-2004-0112 | security flaw | MEDIUM | 5.0 | Mar 18, 2004 |
| CVE-2004-0081 | security flaw | MEDIUM | 5.0 | Mar 18, 2004 |
| CVE-2004-0079 | security flaw | HIGH | 7.5 | Mar 18, 2004 |
Showing 1 to 16 of 16 CVEs