Vulnerability Details CVE-2017-9279
NetIQ Identity Manager before 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user administrators to potentially execute code or mislead users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.9%
CVSS Severity
CVSS v3 Score 2.0
CVSS v2 Score 9.0
Products affected by CVE-2017-9279
-
cpe:2.3:a:netiq:identity_manager:4.5