Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5189

Опубликовано: 02 мар. 2018
Источник: nvd
CVSS3: 4.3
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:netiq:imanager:2.7:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.1:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.2:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.3:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.4:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.5:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.6:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p10:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p11:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p4:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p5:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p6:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p7:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p8:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7:p9:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7.10:hf1:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:2.7.7.10:hf2:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:*:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp1:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp2:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp3:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0:sp4:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.2:p1:*:*:*:*:*:*
cpe:2.3:a:netiq:imanager:3.0.3:*:*:*:*:*:*:*

EPSS

Процентиль: 39%
0.00172
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-522
CWE-287

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.

EPSS

Процентиль: 39%
0.00172
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-522
CWE-287