Security Advisory

CVE-2017-9279

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-03-02 20:00:00
Last updated 2024-09-17 00:35:46
Assigner microfocus
CVSS score 2.0
State PUBLISHED

Description

NetIQ Identity Manager before 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user administrators to potentially execute code or mislead users.