Imprivata Privileged Access Management (formally Xton Privileged Access Management) 2.3.202112051108 allows XSS.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://www.imprivata.com/privileged-access-management | product |
https://aegis9.com.au/blog/ | third party advisory |
https://www.aegis9.com.au/blog/5/ | third party advisory exploit |