The certificate upload in NetIQ eDirectory PKI plugin before 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated attackers to execute JSP applets on the iManager server.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: microfocus

Published: 2018-03-02T20:00:00Z

Updated: 2024-09-16T23:35:59.724Z

Reserved: 2017-04-05T00:00:00

Link: CVE-2017-7429

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-03-02T20:29:00.490

Modified: 2024-11-21T03:31:52.987

Link: CVE-2017-7429

cve-icon Redhat

No data.