TROYANOSYVIRUS
Volver a CVEs

CVE-2017-5183

N/A

Descripcion

NetIQ Access Manager 4.2.2 and 4.3.x before 4.3.1+, when configured as an Identity Server, has XSS in the AssertionConsumerServiceURL field of a signed AuthnRequest in a samlp:AuthnRequest document.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado4/20/2017
Ultima modificacion4/20/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

netiq:access_manager

Debilidades (CWE)

CWE-79

Referencias

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.