CVE-2007-4526: Low severity NetIQ Identity Manager vulnerability
Published Aug 25, 2007
·Updated
The Client Login Extension (CLE) in Novell Identity Manager before 3.5.1 20070730 stores the username and password in a local file, which allows local users to obtain sensitive information by reading this file.
Affected Software
2 affected components
NetIQ Identity Manager<=3.5
Novell Client Login Extension \(cle\)
Remediation
Patch Available
Event History
Aug 25, 2007
CVE Published
12:17 AM
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4526?
CVE-2007-4526 is considered a high severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2007-4526?
To fix CVE-2007-4526, upgrade to Novell Identity Manager version 3.5.1 or later.
3
What happens if I do not address CVE-2007-4526?
Failure to address CVE-2007-4526 could lead to unauthorized access to usernames and passwords stored in local files.
4
Who is affected by CVE-2007-4526?
Users of Novell Identity Manager versions before 3.5.1 are affected by CVE-2007-4526.
5
What components are vulnerable in CVE-2007-4526?
The vulnerability specifically affects the Client Login Extension (CLE) in Novell Identity Manager.