CVE-2017-9279

Publication date

2018-03-02 20:00:00

Family

microfocus

State

PUBLISHED

Description

NetIQ Identity Manager before 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user administrators to potentially execute code or mislead users.