Loading
An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages do not validate the HTTP Referer header.
Use CWE-79, Netiq vendor hub and Access Manager product page to widen CVE-2017-5191 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-1342, CVE-2017-14803 and CVE-2020-11843 for nearby disclosures in the same product family.