CVE-2018-7678

A cross site scripting vulnerability exist in the Administration Console in NetIQ Access Manager (NAM) 4.3 and 4.4.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netiq:access_manager:4.3:*:*:*:*:*:*:*
cpe:2.3:a:netiq:access_manager:4.4:*:*:*:*:*:*:*

History

21 Nov 2024, 04:12

Type Values Removed Values Added
CVSS v2 : 3.5
v3 : 4.8
v2 : 3.5
v3 : 3.5
References () http://www.securityfocus.com/bid/103421 - () http://www.securityfocus.com/bid/103421 -
References () https://www.netiq.com/support/kb/doc.php?id=7022724 - () https://www.netiq.com/support/kb/doc.php?id=7022724 -

07 Nov 2023, 03:01

Type Values Removed Values Added
References (BID) http://www.securityfocus.com/bid/103421 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/103421 -
References (CONFIRM) https://www.netiq.com/support/kb/doc.php?id=7022724 - Vendor Advisory () https://www.netiq.com/support/kb/doc.php?id=7022724 -

Information

Published : 2018-03-14 15:29

Updated : 2024-11-21 04:12


NVD link : CVE-2018-7678

Mitre link : CVE-2018-7678

CVE.ORG link : CVE-2018-7678


JSON object : View

Products Affected

netiq

  • access_manager
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')