Vulnerabilities > CVE-2007-0110 - Cross-Site Scripting vulnerability in Novell Access Manager Identity Server 3
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Cross-site scripting (XSS) vulnerability in nidp/idff/sso in Novell Access Manager Identity Server before 3.0.0-1013 allows remote attackers to inject arbitrary web script or HTML via the IssueInstant parameter, which is not properly handled in the resulting error message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | Novell Access Manager 3 Identity Server IssueInstant Parameter Cross-Site Scripting Vulnerability. CVE-2007-0110. Remote exploit for novell platform |
id | EDB-ID:29400 |
last seen | 2016-02-03 |
modified | 2007-01-08 |
published | 2007-01-08 |
reporter | anonymous |
source | https://www.exploit-db.com/download/29400/ |
title | Novell Access Manager 3 Identity Server IssueInstant Parameter Cross-Site Scripting Vulnerability |