ZeroHour

CVE-2016-1598

CVSS 3.0
5.4 medium
EPSS
<1%p45
Published
()
Modified
Description

XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages.

Vendors
novell
Products
identity manager, identity manager identity applications
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.