CVE-2017-9275: NetIQ Identity Reporting XSS exposure
Published Apr 26, 2018
·Updated
NetIQ Identity Reporting, in versions prior to 5.5 Service Pack 1, is susceptible to an XSS attack.
Affected Software
2 affected components
NetIQ Identity Reporting<5.5
NetIQ Identity Reporting=5.5
Event History
Apr 26, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-9275?
CVE-2017-9275 is considered a medium severity vulnerability due to its potential for XSS attacks.
2
How do I fix CVE-2017-9275?
To fix CVE-2017-9275, upgrade to NetIQ Identity Reporting version 5.5 Service Pack 1 or later.
3
What type of attack is associated with CVE-2017-9275?
CVE-2017-9275 is associated with cross-site scripting (XSS) attacks.
4
Are any versions of NetIQ Identity Reporting immune to CVE-2017-9275?
Yes, versions of NetIQ Identity Reporting that are 5.5 Service Pack 1 and later are immune to CVE-2017-9275.
5
What should users of NetIQ Identity Reporting prior to 5.5 Service Pack 1 do regarding CVE-2017-9275?
Users of NetIQ Identity Reporting prior to 5.5 Service Pack 1 should promptly upgrade to secure their systems against CVE-2017-9275.