Summary
Novell iManager is prone to an arbitrary-file-upload vulnerability because it fails to properly sanitize user- supplied input.
An attacker may leverage this issue to upload arbitrary files to the affected computer
this can result in arbitrary code execution within the context of the vulnerable application.
Novell iManager 2.7.3.2 and prior are vulnerable.
Solution
Updates are available. Please see the references for details.
References
Severity
Classification
-
CVSS Base Score: 4.6
AV:N/AC:H/Au:S/C:P/I:P/A:P
Related Vulnerabilities
- Adobe Reader Information Disclosure & Denial of Service Vulnerabilities (Windows)
- Asterisk SIP REGISTER Response Username Enumeration Vulnerability
- Adobe Reader Multiple Unspecified Vulnerabilities Jun06 (Mac OS X)
- Apache Tomcat Multiple Vulnerabilities - 02 Mar14
- Adobe Flash Media Server Video Stream Capture Security Issue