Vulnerabilities
Vulnerable Software
Microfocus:  Security Vulnerabilities
NetIQ eDirectory versions prior to 9.0.2, under some circumstances, could be susceptible to downgrade of communication security.
CVSS Score
7.5
EPSS Score
0.002
Published
2019-03-21
A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.
CVSS Score
6.5
EPSS Score
0.033
Published
2019-02-20
A local privilege escalation vulnerability in the famtd component of Micro Focus Filr 3.0 allows a local attacker authenticated as a low privilege user to escalate to root. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.
CVSS Score
7.8
EPSS Score
0.014
Published
2019-02-20
An Authentication Bypass issue exists in Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.
CVSS Score
9.8
EPSS Score
0.004
Published
2019-02-12
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.
CVSS Score
8.6
EPSS Score
0.592
Published
2019-02-11
A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access
CVSS Score
6.5
EPSS Score
0.097
Published
2018-12-13
A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access
CVSS Score
6.5
EPSS Score
0.097
Published
2018-12-13
Cross site scripting vulnerability in iManager prior to 3.1 SP2.
CVSS Score
6.1
EPSS Score
0.002
Published
2018-12-12
Incorrect enforcement of authorization checks in eDirectory prior to 9.1 SP2
CVSS Score
7.5
EPSS Score
0.002
Published
2018-12-12
Cross site scripting vulnerability in eDirectory prior to 9.1 SP2
CVSS Score
6.1
EPSS Score
0.002
Published
2018-12-12


Contact Us

Shodan ® - All rights reserved