Security Advisory
CVE-2016-1592
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
XSS in NetIQ Designer for Identity Manager before 4.5.3 allows remote attackers to inject arbitrary HTML code via the nrfEntitlementReport.do CGI.