CVE Published: 24/04/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: microfocus |
Vendor: n/a |
Product: NetIQ Access Manager 4.2 and NetIQ Access Manager 4.3 Status : PUBLISHED
CVE-2017-5191 Description
An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages do not validate the HTTP Referer header.