CVE-2018-17950: High severity micro focus netiq edirectory vulnerability
Published Dec 12, 2018
·Updated
Incorrect enforcement of authorization checks in eDirectory prior to 9.1 SP2
Affected Software
2 affected components
MicroFocus Edirectory<=9.1
MicroFocus Edirectory=9.1-sp1
Event History
Dec 12, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-17950?
CVE-2018-17950 has been rated as a medium severity vulnerability due to improper enforcement of authorization checks.
2
How do I fix CVE-2018-17950?
To mitigate CVE-2018-17950, users should upgrade to eDirectory version 9.1 SP2 or later.
3
What systems are affected by CVE-2018-17950?
CVE-2018-17950 affects Micro Focus eDirectory versions prior to 9.1 SP2, including versions up to 9.1 and 9.1 SP1.
4
What does CVE-2018-17950 impact?
CVE-2018-17950 impacts the security and authorization processes within eDirectory, potentially allowing unauthorized access.
5
Is CVE-2018-17950 exploitable remotely?
Yes, CVE-2018-17950 can be exploited remotely if the affected eDirectory system is accessible over a network.