CVE-2017-7431

Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:novell:imanager:2.7:*:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp1:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp2:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp3:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp4:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp4_patch1:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp4_patch2:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp4_patch3:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp4_patch4:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp5:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp6:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_1:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_10:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_2:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_3:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_4:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_5:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_6:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_7:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_8:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.7:sp7_patch_9:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:netiq:imanager:3.0:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.3.1:*:*:*:*:*:*:*

History

07 Nov 2023, 02:50

Type Values Removed Values Added
References (CONFIRM) https://www.netiq.com/support/kb/doc.php?id=7016795 - Release Notes, Vendor Advisory () https://www.netiq.com/support/kb/doc.php?id=7016795 -
References (CONFIRM) https://www.novell.com/support/kb/doc.php?id=7010166 - Release Notes, Vendor Advisory () https://www.novell.com/support/kb/doc.php?id=7010166 -
References (CONFIRM) https://dl.netiq.com/Download?buildid=wpS1UqIlx-o~ - Release Notes, Vendor Advisory () https://dl.netiq.com/Download?buildid=wpS1UqIlx-o~ -
References (CONFIRM) https://bugzilla.novell.com/show_bug.cgi?id=1024963 - Permissions Required () https://bugzilla.novell.com/show_bug.cgi?id=1024963 -
References (CONFIRM) https://dl.netiq.com/Download?buildid=24FxpmqdThE~ - Release Notes, Vendor Advisory () https://dl.netiq.com/Download?buildid=24FxpmqdThE~ -
References (CONFIRM) https://bugzilla.novell.com/show_bug.cgi?id=1030692 - Permissions Required () https://bugzilla.novell.com/show_bug.cgi?id=1030692 -

Information

Published : 2017-05-03 05:59

Updated : 2023-12-10 12:01


NVD link : CVE-2017-7431

Mitre link : CVE-2017-7431

CVE.ORG link : CVE-2017-7431


JSON object : View

Products Affected

novell

  • imanager

netiq

  • imanager
CWE
CWE-352

Cross-Site Request Forgery (CSRF)