CVE-2017-7432: Critical severity Novell iManager vulnerability
Published May 3, 2017
·Updated
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability.
Affected Software
28 affected components
Novell iManager=2.7
Novell iManager=2.7-sp1
Novell iManager=2.7-sp2
Novell iManager=2.7-sp3
Novell iManager=2.7-sp4
Novell iManager=2.7-sp4_patch1
Novell iManager=2.7-sp4_patch2
Novell iManager=2.7-sp4_patch3
Novell iManager=2.7-sp4_patch4
Novell iManager=2.7-sp5
Novell iManager=2.7-sp6
Novell iManager=2.7-sp7
Novell iManager=2.7-sp7_patch_1
Novell iManager=2.7-sp7_patch_10
Novell iManager=2.7-sp7_patch_2
Novell iManager=2.7-sp7_patch_3
Novell iManager=2.7-sp7_patch_4
Novell iManager=2.7-sp7_patch_5
Novell iManager=2.7-sp7_patch_6
Novell iManager=2.7-sp7_patch_7
Novell iManager=2.7-sp7_patch_8
Novell iManager=2.7-sp7_patch_9
NetIQ iManager=3.0
NetIQ iManager=3.0.1
NetIQ iManager=3.0.2
NetIQ iManager=3.0.2.1
NetIQ iManager=3.0.3
NetIQ iManager=3.0.3.1
Event History
May 3, 2017
CVE Published
via MITRE·05:13 AM
Data Sourced
via MITRE·05:13 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-7432?
CVE-2017-7432 has been classified as a high severity vulnerability due to its ability to allow webshell upload.
2
How do I fix CVE-2017-7432?
To mitigate CVE-2017-7432, upgrade to Novell iManager 2.7 SP7 Patch 10 HF1 or NetIQ iManager 3.0.3.1.
3
Which versions of Novell iManager are affected by CVE-2017-7432?
CVE-2017-7432 affects Novell iManager versions 2.7.x before 2.7 SP7 Patch 10.
4
Which versions of NetIQ iManager are affected by CVE-2017-7432?
NetIQ iManager versions prior to 3.0.3.1 are vulnerable to CVE-2017-7432.
5
What type of vulnerability is CVE-2017-7432?
CVE-2017-7432 is classified as a webshell upload vulnerability.