CVE-2018-1342 Vulnerability Details
/
/
/
CVE-2018-1342 Metadata Quick Info
CVE Published: 26/01/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018
Source: microfocus |
Vendor: Micro Focus |
Product: NetIQ Access Manager, Administrative Console
Status : PUBLISHED
CVE-2018-1342 Description
A Vulnerability exists on Admin Console where an attacker can upload files to the Admin Console server, and potentially execute them. This impacts NetIQ Access Manager versions 4.3 and 4.4 as well as the Administrative console.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID:
CWE Name: Arbitrary file upload to the Admin Console server
Source: Micro Focus
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).