Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2024-36459

Disclosure Date: June 14, 2024 (last updated June 15, 2024)
A CRLF cross-site scripting vulnerability has been identified in certain configurations of the SiteMinder Web Agent for IIS Web Server and SiteMinder Web Agent for Domino Web Server. As a result, an attacker can execute arbitrary Javascript code in a client browser.
0
Attacker Value
Unknown

CVE-2023-23956

Disclosure Date: May 30, 2023 (last updated October 08, 2023)
A user can supply malicious HTML and JavaScript code that will be executed in the client browser
Attacker Value
Unknown

CVE-2005-10001

Disclosure Date: March 28, 2022 (last updated November 08, 2023)
A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical. Affected by this issue is the file /siteminderagent/pwcgi/smpwservicescgi.exe of the component Login. The manipulation of the argument target leads to an open redirect. The exploit has been disclosed to the public and may be used. NOTE: This vulnerability only affects products that are no longer supported by the maintainer