CVE-2017-9278: Netiq Identity Manager
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
The NetIQ Identity Manager Oracle EBS driver before 4.0.2.0 sent EBS logs containing the driver authentication password, potentially disclosing this to attackers able to read the EBS tables.
Affected products
- Netiq Identity Manager: before 4.0.2.0 (fixed in 4.0.2.0)
Published 2018-03-02. Last modified 2026-06-17.