CVE-2018-12480: NetIQ Access Manager XSS vulnerability in versions prior to 4.4 SP3
Mitigates an XSS issue in NetIQ Access Manager versions prior to 4.4 SP3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2018-12480?
CVE-2018-12480 is an XSS vulnerability in NetIQ Access Manager versions prior to 4.4 SP3.
How severe is CVE-2018-12480?
CVE-2018-12480 has a severity rating of 6.1 (medium).
Which software versions are affected by CVE-2018-12480?
Versions 4.1, 4.1-sp1, 4.1-sp2, 4.2, 4.3, 4.4, 4.4-sp1, and 4.4-sp2 of Microfocus Access Manager are affected by CVE-2018-12480.
How can I mitigate CVE-2018-12480?
To mitigate CVE-2018-12480, update to NetIQ Access Manager version 4.4 SP3 or later.
Where can I find more information about CVE-2018-12480?
You can find more information about CVE-2018-12480 in the following references: - [Microfocus Knowledge Base](https://support.microfocus.com/kb/doc.php?id=7023513) - [NetIQ Access Manager Release Notes](https://www.netiq.com/documentation/access-manager-44/accessmanager443-release-notes/data/accessmanager443-release-notes.html#b149i4n6)