CVE-2016-1598: Novell Identity Manager
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages.
Affected products
- Novell Identity Manager: version 4.5 only
- Novell Identity Manager Identity Applications: up to and including 4.5.3
Published 2016-10-27. Last modified 2026-06-17.