← Back

CVE-2017-7429

nvd nist
Published: Mar 2, 2018Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

The certificate upload in NetIQ eDirectory PKI plugin before 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated attackers to execute JSP applets on the iManager server.

Affected (7)

1 product
Edirectory
1 product
Edirectory
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Up to 8.8.8
Netiq
Version 8.8.8 patch10
Version 8.8.8 patch5
Version 8.8.8 patch6
Version 8.8.8 patch7
Version 8.8.8 patch8
Version 8.8.8 patch9

Timeline

No history available yet.