CVE-2017-14799

A cross site scripting attack in handling the ESP login parameter handling in NetIQ Access Manager before 4.3.3 could be used to inject javascript code into the login page.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:netiq:access_manager:*:*:*:*:*:*:*:*

Information

Published : 2018-03-01 20:29

Updated : 2019-10-09 23:24


NVD link : CVE-2017-14799

Mitre link : CVE-2017-14799


JSON object : View

Products Affected

netiq

  • access_manager
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')