First published: Mon Aug 31 2020(Updated: )
Dashboards and progressiveProfileForms in ForgeRock Identity Manager before 7.0.0 are vulnerable to stored XSS. The vulnerability affects versions 6.5.0.4, 6.0.0.6.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ForgeRock Identity Manager | =6.0.0.6 | |
ForgeRock Identity Manager | =6.5.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this security issue is CVE-2020-17465.
The severity level of CVE-2020-17465 is medium.
Versions 6.0.0.6 and 6.5.0.4 of ForgeRock Identity Manager are affected by CVE-2020-17465.
CVE-2020-17465 is a stored cross-site scripting (XSS) vulnerability.
Yes, you can find more information about CVE-2020-17465 in the following references: [Link 1](https://gist.github.com/gajendkmr/261f45e06c41656131a651c920c7f406), [Link 2](https://www.nccgroup.com/us/our-research/?research=Technical+advisories).