ZeroHour

CVE-2017-14800

CVSS 3.0
6.1 medium
EPSS
<1%p53
Published
()
Modified
Description

A reflected cross site scripting attack in the NetIQ Access Manager before 4.3.3 using the "typecontainerid" parameter of the policy editor could allowed code injection into pages of authenticated users.

Vendors
netiq
Products
access manager
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.