CVE-2022-26329
LOWNetIQ Identity Manager <4.8.5 - Info Disclosure
Title source: llmDescription
File existence disclosure vulnerability in NetIQ Identity Manager plugin prior to version 4.8.5 allows attacker to determine whether a file exists on the filesystem. This issue affects: Micro Focus NetIQ Identity Manager NetIQ Identity Manager versions prior to 4.8.5 on ALL.
Scores
CVSS v3
1.8
EPSS
0.0023
EPSS Percentile
45.4%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N
Classification
CWE
CWE-538
CWE-668
Status
published
Affected Products (1)
netiq/identity_manager
< 4.8.5
Timeline
Published
Jan 26, 2023
Tracked Since
Feb 18, 2026