Loading
NetIQ Privileged Account Manager before 3.1 Patch Update 3 allowed cross site scripting attacks via javascript DOM modification using the supplied cookie parameter.
Use CWE-79, Netiq vendor hub and Privileged Account Manager product page to widen CVE-2017-7438 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-1343 and CVE-2017-7437 for nearby disclosures in the same product family.