Novell Access Manager iManager prior to 4.3.3 did not validate parameters so that cross site scripting content could be reflected back into the result page using the "a" parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
netiq access manager |