CVE-2017-7437
05.03.2018, 16:29
NetIQ Privileged Account Manager before 3.1 Patch Update 3 allowed cross site scripting attacks via the "type" and "account" parameters of json requests.
Vendor | Product | Version |
---|---|---|
netiq | privileged_account_manager | 𝑥 ≤ 3.0 |
netiq | privileged_account_manager | 3.1 |
netiq | privileged_account_manager | 3.1:hotfix1 |
netiq | privileged_account_manager | 3.1:hotfix2 |
𝑥
= Vulnerable software versions
References