Vulnerabilities > Netiq > Imanager > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2022-38758 Cross-site Scripting vulnerability in Netiq Imanager
Cross-site Scripting (XSS) vulnerability in NetIQ iManager prior to version 3.2.6 allows attacker to execute malicious scripts on the user's browser.
network
low complexity
netiq CWE-79
6.1
2018-07-10 CVE-2018-12462 Cross-site Scripting vulnerability in Netiq Imanager 3.1.1
NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities.
network
low complexity
netiq CWE-79
6.1
2018-03-21 CVE-2018-1347 Cross-site Scripting vulnerability in Netiq Imanager 2.7.7
The administrative web interface in NetIQ iManager, versions prior to 3.1, are vulnerable to reflected cross site scripting.
network
low complexity
netiq CWE-79
6.1
2017-11-06 CVE-2017-7425 Cross-site Scripting vulnerability in Netiq Imanager 3.0.3.2
Multiple potential reflected XSS issues exist in NetIQ iManager versions before 2.7.7 Patch 10 HF2 and 3.0.3.2.
network
low complexity
netiq CWE-79
6.1
2017-05-03 CVE-2017-7430 Cross-site Scripting vulnerability in multiple products
Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework.
network
low complexity
novell netiq CWE-79
6.1
2017-05-03 CVE-2017-7428 Improper Input Validation vulnerability in Netiq Imanager
NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat.
network
low complexity
netiq CWE-20
5.3