First published: Fri Mar 02 2018(Updated: )
Novell Access Manager Admin Console and IDP servers before 4.3.3 have a URL that could be used by remote attackers to trigger unvalidated redirects to third party sites.
Credit: meissner@suse.de
Affected Software | Affected Version | How to fix |
---|---|---|
NetIQ Access Manager | <=4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14802 is classified as a moderate severity vulnerability due to potential unauthorized access risks.
To mitigate CVE-2017-14802, upgrade Novell Access Manager to version 4.3.3 or later.
CVE-2017-14802 affects users of Novell Access Manager versions prior to 4.3.3.
CVE-2017-14802 allows remote attackers to perform unvalidated redirects to third-party sites.
There is no reported workaround for CVE-2017-14802; upgrading to the latest version is recommended.