Description
The Linux Access Gateway in Novell Access Manager before 3.0 SP1 Release Candidate 1 (RC1) allows remote attackers to bypass unspecified security controls via Fullwidth/Halfwidth Unicode encoded data in a HTTP POST request.
References (4)
Core 4
Core References
Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2390
Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3075
Vendor Advisory x_refsource_confirm
http://www.novell.com/documentation/novellaccessmanager/readme/accessmanager_readme.html#ban5hsz
Vendor Advisory x_refsource_confirm
https://secure-support.novell.com/KanisaPlatform/Publishing/539/3193302_f.SAL_Public.html
Scores
EPSS
0.0020
EPSS Percentile
41.8%
Details
Status
published
Products (1)
novell/access_manager
3
Published
Jul 05, 2007
Tracked Since
Feb 18, 2026