CVE-2017-14800
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD
Description
A reflected cross site scripting attack in the NetIQ Access Manager before 4.3.3 using the "typecontainerid" parameter of the policy editor could allowed code injection into pages of authenticated users.
Affected (1)
Products: Netiq: Access Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.3.3 |
References (2)
Source: security@opentext.com
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.