CVE-2016-5758: CSRF
A cross site request forgery protection mechanism in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be circumvented by repeated uploads causing a high load.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5758?
CVE-2016-5758 is rated as a medium severity vulnerability due to the potential risk of cross-site request forgery exploitation.
How do I fix CVE-2016-5758?
To fix CVE-2016-5758, update NetIQ Access Manager to version 4.1.2 Hot Fix 1 or 4.2.2.
What is the main impact of CVE-2016-5758?
The main impact of CVE-2016-5758 is the circumvention of the cross-site request forgery protection mechanism, allowing for potential malicious activity.
Which versions of NetIQ Access Manager are affected by CVE-2016-5758?
NetIQ Access Manager versions 4.1, 4.1-sp1, 4.1-sp2, 4.2, and 4.2-sp1 are affected by CVE-2016-5758.
Is there a temporary mitigation for CVE-2016-5758 before applying the patch?
There are no specific temporary mitigations mentioned for CVE-2016-5758, so applying the appropriate patch is recommended.