Back to search
CVE-2017-5191
Published: Apr 24, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages do not validate the HTTP Referer header.
| Vendor | Product | Versions |
|---|---|---|
n/a | NetIQ Access Manager 4.2 and NetIQ Access Manager 4.3 | affected NetIQ Access Manager 4.2 and NetIQ Access Manager 4.3 |
References
https://www.novell.com/support/kb/doc.php?id=7018793
x_refsource_CONFIRM
98093
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now