CVE-2017-9284: IDM 4.6 Identity Applications information leakage
Published Apr 26, 2018
·Updated
IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.
Affected Software
1 affected component
NetIQ Identity Manager>=4.6<4.6.2.1
Event History
Apr 26, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-9284?
CVE-2017-9284 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2017-9284?
To fix CVE-2017-9284, upgrade to NetIQ Identity Manager version 4.6.2.1 or later.
3
What kind of sensitive information is exposed by CVE-2017-9284?
CVE-2017-9284 may expose sensitive configuration data that could be exploited by an attacker.
4
Which versions of NetIQ Identity Manager are affected by CVE-2017-9284?
NetIQ Identity Manager versions prior to 4.6.2.1 are affected by CVE-2017-9284.
5
Is there a patch available for CVE-2017-9284?
Yes, a patch is included in the updated version 4.6.2.1 and newer for CVE-2017-9284.