XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages.
| Software | From | Fixed in |
|---|---|---|
| novell / identity_manager | 4.5 | 4.5.x |
| novell / identity_manager_identity_applications | - | 4.5.3.x |