CVE-2010-4324
Novell Identity Manager < 3.7.0 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the Approval Form in the User Application in the Roles Based Provisioning Module 3.7.0 before 370D in Novell Identity Manager (aka IDM) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (8)
Scores
EPSS
0.0175
EPSS Percentile
82.4%
Classification
CWE
CWE-79
Status
published
Affected Products (3)
novell/identity_manager
novell/identity_manager_roles_based_provisioning_module
< 3.7.0
n/a/n/a
Timeline
Published
Jan 07, 2011
Tracked Since
Feb 18, 2026