CVE-2007-3570: High severity Novell Access Manager vulnerability
Published Jul 5, 2007
·Updated
The Linux Access Gateway in Novell Access Manager before 3.0 SP1 Release Candidate 1 (RC1) allows remote attackers to bypass unspecified security controls via Fullwidth/Halfwidth Unicode encoded data in a HTTP POST request.
Affected Software
1 affected component
Novell Access Manager=3
Event History
Jul 5, 2007
CVE Published
07:30 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3570?
CVE-2007-3570 is considered a medium severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2007-3570?
To mitigate CVE-2007-3570, upgrade to Novell Access Manager version 3.0 SP1 Release Candidate 1 or later.
3
What systems are affected by CVE-2007-3570?
CVE-2007-3570 affects Novell Access Manager versions before 3.0 SP1 Release Candidate 1.
4
Can CVE-2007-3570 be exploited remotely?
Yes, CVE-2007-3570 allows remote attackers to bypass security controls via crafted HTTP POST requests.
5
What kind of attack does CVE-2007-3570 facilitate?
CVE-2007-3570 enables an attacker to exploit Fullwidth/Halfwidth Unicode encoding to bypass security measures.