microfocus access-manager CVE-2014-5217 is a vulnerability in Micro Focus Access Manager
Published on December 23, 2014

Cross-site request forgery (CSRF) vulnerability in nps/servlet/webacc in the Administration Console server in NetIQ Access Manager (NAM) 4.x before 4.1 allows remote attackers to hijack the authentication of administrators for requests that change the administrative password via an fw.SetPassword action.

NVD


Products Associated with CVE-2014-5217

Want to know whenever a new CVE is published for Micro Focus Access Manager? stack.watch will email you.

 

Exploit Probability

EPSS
0.19%
Percentile
40.70%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.