A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability. This affects NetIQ Access Manager 4.5 and 5.0
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.7%