Loading
Generated remediation guidance and an executive summary. No account required.
The certificate upload in NetIQ eDirectory PKI plugin before 8.8.8 Patch 10 Hotfix 1 could be abused to upload JSP code which could be used by authenticated attackers to execute JSP applets on the iManager server.
Use CWE-434, Microfocus vendor hub and Edirectory product page to widen CVE-2017-7429 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-22532, CVE-2018-17950 and CVE-2018-7686 for nearby disclosures in the same product family.