First published: Fri Nov 20 2020(Updated: )
NetIQ Identity Manager 4.8 prior to version 4.8 SP2 HF1 are affected by an injection vulnerability. This vulnerability is fixed in NetIQ IdM 4.8 SP2 HF1.
Credit: security@microfocus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus Identity Manager | =4.8 | |
Micro Focus Identity Manager | =4.8-hf1 | |
Micro Focus Identity Manager | =4.8-sp1 | |
Micro Focus Identity Manager | =4.8-sp1_hf1 | |
Micro Focus Identity Manager | =4.8-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-25839 is categorized as an injection vulnerability, which can lead to unauthorized access or manipulation of data.
To fix CVE-2020-25839, upgrade to NetIQ Identity Manager 4.8 SP2 HF1 or a later version.
CVE-2020-25839 affects NetIQ Identity Manager versions 4.8, 4.8 SP1, and 4.8 SP1 HF1.
Yes, CVE-2020-25839 can impact organizational security by allowing attackers to exploit the injection vulnerability.
There is no official workaround for CVE-2020-25839; upgrading is the recommended solution.