Vulnerability index

Browse CVEs

245 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Netiq Advanced Authentication CRITICAL 9.8
CVE-2023-24468

Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2

Fix: 6.3+
Fix from $2,300 2023-03-15
Zenworks HIGH 7.2
CVE-2022-38757

A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows administrators with rights t…

Fix: 2020+
Fix from $1,950 2022-12-23
Operations Bridge MEDIUM 5.4
CVE-2022-38754

A potential vulnerability has been identified in Micro Focus Operations Bridge - Containerized. The vulnerability could be exploited by a malicious a…

Fix: 2022.11+
Fix from $1,600 2022-12-08
Netiq Advanced Authentication MEDIUM 6.3
CVE-2022-38753

This update resolves a multi-factor authentication bypass attack

Fix: 6.4+
Fix from $1,600 2022-11-28
Filr MEDIUM 5.3
CVE-2022-38755

A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1. The vulnerability could be exploited to allow a remote unauthen…

Fix: 4.3.1.1+
Fix from $1,600 2022-11-21
Arcsight Logger HIGH 7.5
CVE-2022-26330

Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Informati…

Fix: 7.2.2+
Fix from $1,950 2022-08-31
Arcsight Logger MEDIUM 6.1
CVE-2022-26331

Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Informati…

Fix: 7.2.2+
Fix from $1,600 2022-08-31
Access Manager MEDIUM 6.1
CVE-2021-22531

A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability. This affe…

Mitigation only
Fix from $1,600 2022-05-12
Netiq Access Manager MEDIUM 6.1
CVE-2022-26325

Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.2

Fix: 5.0.2+
Fix from $1,600 2022-05-02
Netiq Access Manager MEDIUM 6.1
CVE-2022-26326

Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access Manager prior to 5.0.2

Fix: 5.0.2+
Fix from $1,600 2022-05-02
Operations Bridge CRITICAL 9.8
CVE-2021-38125

Unauthenticated remote code execution in Micro Focus Operations Bridge containerized, affecting versions 2021.05, 2021.08, and newer versions of Micr…

Mitigation only
Fix from $2,300 2022-04-11
Voltage Securemail MEDIUM 6.5
CVE-2021-38130

A potential Information leakage vulnerability has been identified in versions of Micro Focus Voltage SecureMail Mail Relay prior to 7.3.0.1. The vuln…

Fix: 7.3.0.1+
Fix from $1,600 2022-02-04
Arcsight Enterprise Security Manager MEDIUM 6.1
CVE-2021-38126

Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabi…

No fix yet
Fix from $1,600 2022-01-14
Arcsight Enterprise Security Manager MEDIUM 6.1
CVE-2021-38127

Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabi…

Mitigation only
Fix from $1,600 2022-01-14
Arcsight Enterprise Security Manager CRITICAL 9.8
CVE-2021-38124

Remote Code Execution vulnerability in Micro Focus ArcSight Enterprise Security Manager (ESM) product, affecting versions 7.0.2 through 7.5. The vuln…

Fix: after 7.5
Fix from $2,300 2021-09-28
Access Manager HIGH 7.5
CVE-2021-22527

Information leakage vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4

Fix: 4.5.4 / 5.0.1+
Fix from $1,950 2021-09-13
Access Manager MEDIUM 5.4
CVE-2021-22528

Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4

Fix: 4.5.4 / 5.0.1+
Fix from $1,600 2021-09-13
Access Manager MEDIUM 6.1
CVE-2021-22526

Open Redirection vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4

Fix: 4.5.4 / 5.0.1+
Fix from $1,600 2021-09-13
Network Automation MEDIUM 6.1
CVE-2021-38123

Open Redirect vulnerability in Micro Focus Network Automation, affecting Network Automation versions 10.4x, 10.5x, 2018.05, 2018.11, 2019.05, 2020.02…

Mitigation only
Fix from $1,600 2021-09-07
Access Manager MEDIUM 5.5
CVE-2021-22525

This release addresses a potential information leakage vulnerability in NetIQ Access Manager versions prior to 5.0.1

Fix: 5.0.1+
Fix from $1,600 2021-09-02
Data Protector HIGH 8.8
CVE-2021-22517

A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.…

Mitigation only
Fix from $1,950 2021-08-05
Zenworks Configuration Management MEDIUM 6.7
CVE-2021-22521

A privileged escalation vulnerability has been identified in Micro Focus ZENworks Configuration Management, affecting version 2020 Update 1 and all p…

Fix: 2020+
Fix from $1,600 2021-07-30
Verastream Host Integrator HIGH 7.6
CVE-2021-22523

XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier versions. The vulnerability c…

Fix: 7.8+
Fix from $1,950 2021-07-22
Verastream Host Integrator HIGH 7.1
CVE-2021-22522

Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Update 1 and earlier versions. …

Fix: 7.8+
Fix from $1,950 2021-07-22
Netiq Advanced Authentication MEDIUM 6.5
CVE-2021-22515

Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in NetIQ Advanced Authentication ve…

Fix: 6.3+
Fix from $1,600 2021-07-12
Secure Api Manager HIGH 7.5
CVE-2021-22516

Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affecting version 2.0.0. The vulner…

No fix yet
Fix from $1,950 2021-06-04
Sitescope CRITICAL 9.8
CVE-2021-22519

Execute arbitrary code vulnerability in Micro Focus SiteScope product, affecting versions 11.40,11.41 , 2018.05(11.50), 2018.08(11.51), 2018.11(11.60…

Mitigation only
Fix from $2,300 2021-05-28
Application Performance Management CRITICAL 9.8
CVE-2021-22514

An arbitrary code execution vulnerability exists in Micro Focus Application Performance Management, affecting versions 9.40, 9.50 and 9.51. The vulne…

Mitigation only
Fix from $2,300 2021-04-28
Operations Agent CRITICAL 9.8
CVE-2021-22505

Escalation of privileges vulnerability in Micro Focus Operations Agent, affects versions 12.0x, 12.10, 12.11, 12.12, 12.14 and 12.15. The vulnerabili…

Mitigation only
Fix from $2,300 2021-04-13
Netiq Advanced Authentication HIGH 7.2
CVE-2021-22497

Advanced Authentication versions prior to 6.3 SP4 have a potential broken authentication due to improper session management issue.

Fix: 6.3+
Fix from $1,950 2021-04-12