CVE

Id
104411  
CVE No.
CVE-2017-7591  
Status
Candidate  
Description
OpenIDM through 4.0.0 and 4.5.0 is vulnerable to reflected cross-site scripting (XSS) attacks within the Admin UI, as demonstrated by the _sortKeys parameter to the authzRoles script under managed/user/.  
Phase
Assigned (20170408)  
Votes
None (candidate not yet proposed)  
Comments