NetIQ Access Manager 4.2 before SP3 HF1 and 4.3 before SP1 HF1, when configured as a SAML 2.0 Identity Server with Virtual Attributes, has a concurrency issue causing information leakage, related to a stale profile.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: microfocus

Published: 2017-04-20T15:00:00

Updated: 2024-08-05T14:55:35.383Z

Reserved: 2017-01-06T00:00:00

Link: CVE-2017-5190

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-04-20T15:59:00.170

Modified: 2023-11-07T02:49:22.150

Link: CVE-2017-5190

cve-icon Redhat

No data.