Total vulnerabilities in the database
NetIQ Access Manager (NAM) 4.x before 4.0.1 HF3 allows remote authenticated administrators to discover service-account passwords via a request to (1) roma/jsp/volsc/monitoring/dev_services.jsp or (2) roma/jsp/debug/debug.jsp.
Software | From | Fixed in |
---|---|---|
microfocus / access_manager | 4.0 | 4.0.x |
microfocus / access_manager | 4.0.1 | 4.0.1.x |