PT-2024-10990 · Netiq · Netiq Advance Authentication

Published

2024-08-27

·

Updated

2024-09-13

·

CVE-2021-38122

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions NetIQ Advance Authentication versions prior to 6.3.5.1
Description A Cross-Site Scripting issue has been identified in NetIQ Advance Authentication, impacting server functionality and potentially disclosing sensitive information.
Recommendations For versions prior to 6.3.5.1, update to version 6.3.5.1 or later to mitigate the risks.

Fix

XSS

RCE

Weakness Enumeration

Related Identifiers

CVE-2021-38122

Affected Products

Netiq Advance Authentication