Loading vulnerability details…
CVSS v3.1
N/A
EPSS
0.56%
Published
Oct 27, 2016
Modified
May 6, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages.
Weaknesses (CWE)
Affected Products (2)
References (4)