First published: Wed Mar 14 2018(Updated: )
A CSRF exposure exists in NetIQ Access Manager (NAM) 4.4 Identity Server component.
Credit: meissner@suse.de
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus NetIQ Access Manager | =4.4 |
Apply 4.4 SP1.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7677 is classified as a medium severity vulnerability due to its Cross-Site Request Forgery (CSRF) exposure.
To fix CVE-2018-7677, you should apply the latest security patches provided by NetIQ for Access Manager version 4.4.
CVE-2018-7677 specifically affects the Identity Server component of NetIQ Access Manager version 4.4.
CVE-2018-7677 allows attackers to exploit CSRF to perform unauthorized actions on behalf of authenticated users.
No, CVE-2018-7677 is only reported to affect NetIQ Access Manager version 4.4.