DNA View

CVE-2014-4509

Low
Low Medium High Critical
CVSS Score
Published: Jun 21, 2014
Last Modified: Apr 12, 2025

Vulnerability Description

The MKDQUOTESAFE function in the Fan-out driver scripts in Fan-Out Platform Services in Novell Identity Manager (aka IDM) 4.0.2 allows local users to execute arbitrary commands by leveraging eDirectory POSIX attribute changes to insert shell metacharacters.

Known Affected Software

1 configuration(s) from 1 vendor(s)

identity_manager
Version:
4.0.2
CPE:
cpe:2.3:a:netiq:identity_manager:4.0.2:*:*:*:*:*:*:*
This vulnerability affects 1 software configuration(s). Ensure you patch all affected systems.

Severity Details

out of 10.0
Low

Weakness Type (CWE)

NVD-CWE-Other

Key Information

Published Date
June 21, 2014