Vulnerability index

Browse CVEs

245 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Netiq Advanced Authentication CRITICAL 9.9
CVE-2021-22530

A vulnerability identified in NetIQ Advance Authentication that doesn't enforce account lockout when brute force attack is performed on API based log…

Fix: 6.3+
Fix from $2,300 2024-08-28
Netiq Advanced Authentication MEDIUM 5.5
CVE-2021-22529

A vulnerability identified in NetIQ Advance Authentication that leaks sensitive server information. This issue affects NetIQ Advance Authentication v…

Fix: 6.3+
Fix from $1,600 2024-08-28
Netiq Advanced Authentication MEDIUM 6.5
CVE-2021-22509

A vulnerability identified in storing and reusing information in Advance Authentication. This issue can lead to leakage of sensitive data to unauthor…

Fix: 6.3+
Fix from $1,600 2024-08-28
Netiq Privileged Access Manager HIGH 7.8
CVE-2020-11847

SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. This issue affects Privileged …

Fix: 3.7+
Fix from $1,950 2024-08-21
Netiq Privileged Access Manager HIGH 7.5
CVE-2020-11846

A vulnerability found in OpenText Privileged Access Manager that issues a token. on successful issuance of the token, a cookie gets set that allows u…

Fix: 3.7+
Fix from $1,950 2024-08-21
Netiq Self Service Password Reset MEDIUM 6.1
CVE-2020-11850

Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Cross-Site Scripting (XSS). This issue affects Self Service Pa…

Fix: 4.4+
Fix from $1,600 2024-08-21
Imanager HIGH 7.4
CVE-2024-4429

Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to sensitive information disclosure.

Fix: 3.2.6+
Fix from $1,950 2024-05-28
Imanager CRITICAL 9.8
CVE-2024-3969

XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to remote code execution by parsing untrusted XML…

Fix: 3.2.6+
Fix from $2,300 2024-05-28
Imanager HIGH 7.5
CVE-2024-3970

Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure by…

Fix: 3.2.6+
Fix from $1,950 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3487

Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker to manipulate certain paramete…

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3488

File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a f…

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3967

Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution unisng unsafe java ob…

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3968

Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution using custom file upl…

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3484

Path Traversal found in OpenText™ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure.

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3486

XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information disclosure and remote code executi…

Fix: 3.2.6+
Fix from $2,300 2024-05-15
Imanager HIGH 7.5
CVE-2024-3485

Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure.

Fix: 3.2.6+
Fix from $1,950 2024-05-15
Imanager CRITICAL 9.8
CVE-2024-3483

Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command injection and insecure deserializat…

Fix: after 3.2.6
Fix from $2,300 2024-05-15
Operations Agent HIGH 7.8
CVE-2024-0622

Local privilege escalation vulnerability affects OpenText Operations Agent product versions 12.15 and 12.20-12.25 when installed on Non-Windows platf…

Fix: after 12.25
Fix from $1,950 2024-02-15
Arcsight Management Center MEDIUM 5.4
CVE-2020-25835

A potential vulnerability has been identified in Micro Focus ArcSight Management Center. The vulnerability could be remotely exploited resulting in s…

Fix: 2.9.6+
Fix from $1,600 2023-12-09
Filr HIGH 7.2
CVE-2023-32268

Exposure of Proxy Administrator Credentials An authenticated administrator equivalent Filr user can access the credentials of proxy administrators.

Fix: 23.2.1+
Fix from $1,950 2023-12-06
Fortify Scancentral Dast CRITICAL 9.8
CVE-2023-5913

Incorrect Privilege Assignment vulnerability in opentext Fortify ScanCentral DAST. The vulnerability could be exploited to gain elevated privileges.T…

Mitigation only
Fix from $2,300 2023-11-08
Asset Management X MEDIUM 6.1
CVE-2023-4964

Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.…

Mitigation only
Fix from $1,600 2023-10-30
Cobol Server CRITICAL 9.8
CVE-2023-4501

User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer,…

Mitigation only
Fix from $2,300 2023-09-12
Arcsight Management Center HIGH 8.8
CVE-2023-32267

A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Management Center. The vulnerability could be remotely exploited.

Fix: 3.2.1+
Fix from $1,950 2023-08-11
Cobol Server MEDIUM 6.5
CVE-2023-32265

A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component used in Enterprise Server…

Mitigation only
Fix from $1,600 2023-07-20
Dimensions Cm MEDIUM 6.5
CVE-2023-32261

A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows attackers with Overall/Re…

Fix: 0.9.3.1+
Fix from $1,600 2023-07-19
Dimensions Cm MEDIUM 6.5
CVE-2023-32262

A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows attackers with Item/Confi…

Fix: 0.9.3.1+
Fix from $1,600 2023-07-19
Dimensions Cm MEDIUM 5.7
CVE-2023-32263

A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability could be exploited to retrieve a…

Fix: after 0.9.3
Fix from $1,600 2023-07-19
Arcsight Logger CRITICAL 9.1
CVE-2023-24470

Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.

Fix: 7.3.0+
Fix from $2,300 2023-06-13
Arcsight Logger MEDIUM 6.1
CVE-2023-24469

Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0

Fix: after 7.3.0
Fix from $1,600 2023-06-13