First published: Wed Aug 28 2024(Updated: )
A Cross-Site Scripting vulnerable identified in NetIQ Advance Authentication that impacts the server functionality and disclose sensitive information. This issue affects NetIQ Advance Authentication before 6.3.5.1
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
OpenText NetIQ Advanced Authentication | <6.3 | |
OpenText NetIQ Advanced Authentication | =6.3 | |
OpenText NetIQ Advanced Authentication | =6.3-sp1 | |
OpenText NetIQ Advanced Authentication | =6.3-sp2 | |
OpenText NetIQ Advanced Authentication | =6.3-sp3 | |
OpenText NetIQ Advanced Authentication | =6.3-sp4 | |
OpenText NetIQ Advanced Authentication | =6.3-sp4_patch1 | |
OpenText NetIQ Advanced Authentication | =6.3-sp5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38122 is considered to be a high severity Cross-Site Scripting vulnerability that can impact server functionality and disclose sensitive information.
To mitigate CVE-2021-38122, users should upgrade to NetIQ Advanced Authentication version 6.3.5.1 or later.
CVE-2021-38122 affects all versions of NetIQ Advanced Authentication prior to 6.3.5.1.
Yes, CVE-2021-38122 can be exploited by attackers to execute scripts within the context of the user's session.
Exploiting CVE-2021-38122 could lead to unauthorized access to sensitive information or compromise user credentials.