Beveiligingsadvies

CVE-2016-5751

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-03-23 06:36:00
Laatst bijgewerkt 2024-08-06 01:08:00
Toegewezen door microfocus
CVSS-score geen score
Status PUBLISHED

Beschrijving

An unfiltered finalizer target URL in the SAML processing feature in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 could be used to trigger XSS and leak authentication credentials.