Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6 allows remote attackers to execute script as other users via (1) script that starts with %00 in the numOfExpressions parameter or (2) the mobjtype parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2004-07-13T04:00:00
Updated: 2024-08-08T00:24:27.110Z
Reserved: 2004-07-12T00:00:00
Link: CVE-2004-0672
Vulnrichment
No data.
NVD
Status : Modified
Published: 2004-08-06T04:00:00.000
Modified: 2024-11-20T23:49:08.103
Link: CVE-2004-0672
Redhat
No data.