CVE-2017-14801

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
02/03/2018
Last modified:
07/11/2023

Description

Reflected XSS in the NetIQ Access Manager before 4.3.3 allowed attackers to reflect back xss into the called page using the url parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netiq:access_manager:*:*:*:*:*:*:*:* 4.3.3 (excluding)


References to Advisories, Solutions, and Tools