Medium severity4.6NVD Advisory· Published Mar 2, 2018· Updated Jun 17, 2026
CVE-2017-7438
CVE-2017-7438
Description
NetIQ Privileged Account Manager before 3.1 Patch Update 3 allowed cross site scripting attacks via javascript DOM modification using the supplied cookie parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:netiq:privileged_account_manager:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:netiq:privileged_account_manager:*:*:*:*:*:*:*:*range: <=3.1
- cpe:2.3:a:netiq:privileged_account_manager:3.1:hotfix1:*:*:*:*:*:*
- cpe:2.3:a:netiq:privileged_account_manager:3.1:hotfix2:*:*:*:*:*:*
- Range: unspecified
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.