DNA View

CVE-2016-1600

Low
Low Medium High Critical
CVSS Score
Published: May 09, 2019
Last Modified: Nov 21, 2024

Vulnerability Description

The ServiceNow driver in NetIQ Identity Manager versions prior to 4.6 are susceptible to an information disclosure vulnerability.

Known Affected Software

9 configuration(s) from 1 vendor(s)

identity_manager
Version:
2.7.7.7
CPE:
cpe:2.3:a:microfocus:identity_manager:2.7.7.7:*:*:*:*:*:*:*
identity_manager
Version:
4.5
CPE:
cpe:2.3:a:microfocus:identity_manager:4.5:*:*:*:*:*:*:*
identity_manager
Version:
4.0.2.0
CPE:
cpe:2.3:a:microfocus:identity_manager:4.0.2.0:*:*:*:*:*:*:*
identity_manager
Version:
4.5.3
CPE:
cpe:2.3:a:microfocus:identity_manager:4.5.3:*:*:*:*:*:*:*
identity_manager
Version:
4.5.4
CPE:
cpe:2.3:a:microfocus:identity_manager:4.5.4:*:*:*:*:*:*:*
identity_manager
Version:
4.5.6.1
CPE:
cpe:2.3:a:microfocus:identity_manager:4.5.6.1:*:*:*:*:*:*:*
identity_manager
Version:
4.5.2
CPE:
cpe:2.3:a:microfocus:identity_manager:4.5.2:*:*:*:*:*:*:*
identity_manager
Version:
4.0.2
CPE:
cpe:2.3:a:microfocus:identity_manager:4.0.2:*:*:*:*:*:*:*
identity_manager
Version:
4.0.1
CPE:
cpe:2.3:a:microfocus:identity_manager:4.0.1:*:*:*:*:*:*:*
This vulnerability affects 9 software configuration(s). Ensure you patch all affected systems.

Severity Details

out of 10.0
Low

Weakness Type (CWE)

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Description
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Exploit Likelihood
High
Typical Severity
Medium
Abstraction Level
Class

Key Information

Published Date
May 09, 2019