ZeroHour

CVE-2017-14799

CVSS 3.0
6.1 medium
EPSS
<1%p53
Published
()
Modified
Description

A cross site scripting attack in handling the ESP login parameter handling in NetIQ Access Manager before 4.3.3 could be used to inject javascript code into the login page.

Vendors
netiq
Products
access manager
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.