Vulnerabilities > Netiq > Low

DATE CVE VULNERABILITY TITLE RISK
2017-04-20 CVE-2017-5190 Information Exposure vulnerability in Netiq Access Manager 4.1/4.2/4.3
NetIQ Access Manager 4.2 before SP3 HF1 and 4.3 before SP1 HF1, when configured as a SAML 2.0 Identity Server with Virtual Attributes, has a concurrency issue causing information leakage, related to a stale profile.
network
high complexity
netiq CWE-200
3.1
2007-08-25 CVE-2007-4526 Credentials Management vulnerability in multiple products
The Client Login Extension (CLE) in Novell Identity Manager before 3.5.1 20070730 stores the username and password in a local file, which allows local users to obtain sensitive information by reading this file.
local
low complexity
netiq novell CWE-255
2.1
2006-08-31 CVE-2006-4506 Unspecified vulnerability in Netiq Identity Manager 3.0.1
idmlib.sh in nxdrv in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors, possibly involving the " (quote) and \ (backslash) characters and eval injection.
local
low complexity
netiq
3.6