296,733
Total vulnerabilities in the database
A OAuth application in NetIQ Access Manager 4.3 before 4.3.2 and 4.2 before 4.2.4 allowed cross site scripting attacks due to unescaped "description" field that could be specified by the provider.
| Software | From | Fixed in |
|---|---|---|
| netiq / access_manager | 4.3 | 4.3.2 |
| netiq / access_manager | 4.2 | 4.2.4 |