Vulnerabilities
Vulnerable Software
Microfocus:  Security Vulnerabilities
Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access Manager prior to 5.0.2
CVSS Score
4.0
EPSS Score
0.001
Published
2022-05-02
Unauthenticated remote code execution in Micro Focus Operations Bridge containerized, affecting versions 2021.05, 2021.08, and newer versions of Micro Focus Operations Bridge containerized if the deployment was upgraded from 2021.05 or 2021.08. The vulnerability could be exploited to unauthenticated remote code execution.
CVSS Score
9.8
EPSS Score
0.017
Published
2022-04-11
A potential Information leakage vulnerability has been identified in versions of Micro Focus Voltage SecureMail Mail Relay prior to 7.3.0.1. The vulnerability could be exploited to create an information leakage attack.
CVSS Score
6.5
EPSS Score
0.003
Published
2022-02-04
Escalation of privileges vulnerability in Micro Focus in Micro Focus Operations Agent, affecting versions 12.x up to and including 12.21. The vulnerability could be exploited by a non-privileged local user to access system monitoring data collected by Operations Agent.
CVSS Score
3.3
EPSS Score
0.0
Published
2022-01-25
Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (XSS).
CVSS Score
6.1
EPSS Score
0.002
Published
2022-01-14
Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (XSS).
CVSS Score
6.1
EPSS Score
0.002
Published
2022-01-14
Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) product, affecting all DRA versions prior to 10.1 Patch 1. The vulnerability could lead to unauthorized information disclosure.
CVSS Score
4.9
EPSS Score
0.002
Published
2021-09-28
Remote Code Execution vulnerability in Micro Focus ArcSight Enterprise Security Manager (ESM) product, affecting versions 7.0.2 through 7.5. The vulnerability could be exploited resulting in remote code execution.
CVSS Score
9.8
EPSS Score
0.021
Published
2021-09-28
Information leakage vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
CVSS Score
6.0
EPSS Score
0.002
Published
2021-09-13
Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
CVSS Score
8.0
EPSS Score
0.004
Published
2021-09-13


Contact Us

Shodan ® - All rights reserved