Summary
Novell iManager is prone to an arbitrary-file-upload vulnerability because it fails to properly sanitize user- supplied input.
An attacker may leverage this issue to upload arbitrary files to the affected computer
this can result in arbitrary code execution within the context of the vulnerable application.
Novell iManager 2.7.3.2 and prior are vulnerable.
Solution
Updates are available. Please see the references for details.
References
Severity
Classification
-
CVSS Base Score: 4.6
AV:N/AC:H/Au:S/C:P/I:P/A:P
Related Vulnerabilities
- Apache Tomcat Remote Code Execution Vulnerability - Sep14
- Asterisk CIDR Notation in Access Rule Remote Security Bypass Vulnerability
- Adobe Reader Multiple Unspecified Vulnerabilities Jun06 (Windows)
- Adobe Reader Information Disclosure & Denial of Service Vulnerabilities (Windows)
- Apple Safari Multiple Memory Corruption Vulnerabilities-01 Aug14 (Mac OS X)