« Volver al listado

CVE-2016-5752

Estado: ModificadaAlta (7.5)—

The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handling unsigned SAML requests incorrectly, leaking results to a potentially malicious "Assertion Consumer Service URL" instead of the original requester.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2016-5752",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "security@opentext.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "NetIQ Access Manager",
          "versions": [
            {
              "status": "affected",
              "version": "NetIQ Access Manager"
            }
          ]
        }
      ]
    }
  ],
  "published": "2017-03-23T06:59:00.390",
  "references": [
    {
      "url": "https://www.novell.com/support/kb/doc.php?id=7017809",
      "source": "security@opentext.com"
    },
    {
      "url": "https://www.novell.com/support/kb/doc.php?id=7017809",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-200"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handling unsigned SAML requests incorrectly, leaking results to a potentially malicious \"Assertion Consumer Service URL\" instead of the original requester."
    },
    {
      "lang": "es",
      "value": "La implementación SAML2 en Identity Server en NetIQ Access Manager 4.1 en versiones anteriores a 4.1.2 HF1 y 4.2 en versiones anteriores a 4.2.2 estaba manejando incorrectamente las solicitudes SAML no firmadas, filtrando los resultados a una \"Assertion Consumer Service URL\" potencialmente maliciosa en lugar de al solicitante original."
    }
  ],
  "lastModified": "2026-06-17T00:49:59.220",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:netiq:access_manager:4.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5ADC4C66-A0B0-47E6-8084-C7FBEDC8E503"
            },
            {
              "criteria": "cpe:2.3:a:netiq:access_manager:4.1:sp1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FF9068BB-5689-459A-A637-A12F31B36726"
            },
            {
              "criteria": "cpe:2.3:a:netiq:access_manager:4.1:sp2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2E5148AA-24E9-4171-8B8F-FA9A1F378EF4"
            },
            {
              "criteria": "cpe:2.3:a:netiq:access_manager:4.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "20239843-9281-4AEA-A8DE-E0FECFAE7BC5"
            },
            {
              "criteria": "cpe:2.3:a:netiq:access_manager:4.2:sp1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0FD82557-1FA6-4335-9A17-C14F27D9B713"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security@opentext.com"
}