CVE-2021-22531
12.05.2022, 19:15
A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability. This affects NetIQ Access Manager 4.5 and 5.0
Vendor | Product | Version |
---|---|---|
microfocus | access_manager | 4.5 |
microfocus | access_manager | 4.5:hotfix1 |
microfocus | access_manager | 4.5:sp1 |
microfocus | access_manager | 4.5:sp1_hotfix1 |
microfocus | access_manager | 4.5:sp1_hotfix2 |
microfocus | access_manager | 4.5:sp2 |
microfocus | access_manager | 4.5:sp2_hotfix1 |
microfocus | access_manager | 4.5:sp2_hotfix2 |
microfocus | access_manager | 4.5:sp3 |
microfocus | access_manager | 4.5:sp3_hotfix1 |
microfocus | access_manager | 4.5:sp3_patch3 |
microfocus | access_manager | 4.5:sp4 |
microfocus | access_manager | 4.5:sp5 |
microfocus | access_manager | 5.0 |
microfocus | access_manager | 5.0:sp1 |
𝑥
= Vulnerable software versions