Security Advisory

CVE-2017-5189

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-03-02 20:00:00
Last updated 2024-09-17 03:59:02
Assigner microfocus
CVSS score 4.3
State PUBLISHED

Description

NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Sentinel appliance.