CVE-2024-4555
28.08.2024, 07:15
Improper Privilege Management vulnerability in OpenText NetIQ Access Manager allows user account impersonation in specific scenario.This issue affects NetIQ Access Manager before 5.0.4.1 and before 5.1Enginsight
Vendor | Product | Version |
---|---|---|
microfocus | netiq_access_manager | 𝑥 < 5.0.4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-266 - Incorrect Privilege AssignmentA product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
- CWE-269 - Improper Privilege ManagementThe software does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.