CVE-2017-7419

Publication date

2018-03-02 20:00:00

Family

microfocus

State

PUBLISHED

Description

A OAuth application in NetIQ Access Manager 4.3 before 4.3.2 and 4.2 before 4.2.4 allowed cross site scripting attacks due to unescaped "description" field that could be specified by the provider.