Lucene search

K
cve[email protected]CVE-2012-0430
HistoryDec 25, 2012 - 12:13 p.m.

CVE-2012-0430

2012-12-2512:13:04
web.nvd.nist.gov
28
cve-2012-0430
netiq
edirectory
windows
vulnerability
remote attackers
administrator cookie
authorization checks

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.9%

Unspecified vulnerability in NetIQ eDirectory 8.8.6.x before 8.8.6.7 and 8.8.7.x before 8.8.7.2 on Windows allows remote attackers to obtain an administrator cookie and bypass authorization checks via unknown vectors.

Affected configurations

NVD
Node
microfocusedirectoryMatch8.8.6.0-windows
OR
microfocusedirectoryMatch8.8.6.1-windows
OR
microfocusedirectoryMatch8.8.6.2-windows
OR
microfocusedirectoryMatch8.8.6.3-windows
OR
microfocusedirectoryMatch8.8.6.4-windows
OR
microfocusedirectoryMatch8.8.6.5-windows
OR
microfocusedirectoryMatch8.8.6.6-windows
Node
microfocusedirectoryMatch8.8.7.0-windows
OR
microfocusedirectoryMatch8.8.7.1-windows

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.9%