NetIQ Identity Manager driver, in versions prior to 4.7, allows for an SSL handshake renegotiation which could result in a MITM attack.
2018-03-26T19:29:00.217
2024-11-21T03:59:40.293
Modified
CVSSv3.0: 5.3 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:N
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | netiq | identity_manager | ≤ 4.6 | Yes |