Vulnerability index

Browse CVEs

245 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.9 CVE-2021-22530 A vulnerability identified in NetIQ Advance Authentication that doesn't enforce account lockout when brute force attack is performed on API based log… Netiq Advanced Authentication 6.3+ Fix from $2,3002024-08-28 MEDIUM 5.5 CVE-2021-22529 A vulnerability identified in NetIQ Advance Authentication that leaks sensitive server information. This issue affects NetIQ Advance Authentication v… Netiq Advanced Authentication 6.3+ Fix from $1,6002024-08-28 MEDIUM 6.5 CVE-2021-22509 A vulnerability identified in storing and reusing information in Advance Authentication. This issue can lead to leakage of sensitive data to unauthor… Netiq Advanced Authentication 6.3+ Fix from $1,6002024-08-28 HIGH 7.8 CVE-2020-11847 SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. This issue affects Privileged … Netiq Privileged Access Manager 3.7+ Fix from $1,9502024-08-21 HIGH 7.5 CVE-2020-11846 A vulnerability found in OpenText Privileged Access Manager that issues a token. on successful issuance of the token, a cookie gets set that allows u… Netiq Privileged Access Manager 3.7+ Fix from $1,9502024-08-21 MEDIUM 6.1 CVE-2020-11850 Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Cross-Site Scripting (XSS). This issue affects Self Service Pa… Netiq Self Service Password Reset 4.4+ Fix from $1,6002024-08-21 HIGH 7.4 CVE-2024-4429 Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to sensitive information disclosure. Imanager 3.2.6+ Fix from $1,9502024-05-28 CRITICAL 9.8 CVE-2024-3969 XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to remote code execution by parsing untrusted XML… Imanager 3.2.6+ Fix from $2,3002024-05-28 HIGH 7.5 CVE-2024-3970 Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure by… Imanager 3.2.6+ Fix from $1,9502024-05-15 CRITICAL 9.8 CVE-2024-3487 Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker to manipulate certain paramete… Imanager 3.2.6+ Fix from $2,3002024-05-15 CRITICAL 9.8 CVE-2024-3488 File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a f… Imanager 3.2.6+ Fix from $2,3002024-05-15 CRITICAL 9.8 CVE-2024-3967 Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution unisng unsafe java ob… Imanager 3.2.6+ Fix from $2,3002024-05-15 CRITICAL 9.8 CVE-2024-3968 Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution using custom file upl… Imanager 3.2.6+ Fix from $2,3002024-05-15 CRITICAL 9.8 CVE-2024-3484 Path Traversal found in OpenText™ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure. Imanager 3.2.6+ Fix from $2,3002024-05-15 CRITICAL 9.8 CVE-2024-3486 XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information disclosure and remote code executi… Imanager 3.2.6+ Fix from $2,3002024-05-15 HIGH 7.5 CVE-2024-3485 Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure. Imanager 3.2.6+ Fix from $1,9502024-05-15 CRITICAL 9.8 CVE-2024-3483 Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command injection and insecure deserializat… Imanager after 3.2.6 Fix from $2,3002024-05-15 HIGH 7.8 CVE-2024-0622 Local privilege escalation vulnerability affects OpenText Operations Agent product versions 12.15 and 12.20-12.25 when installed on Non-Windows platf… Operations Agent after 12.25 Fix from $1,9502024-02-15 MEDIUM 5.4 CVE-2020-25835 A potential vulnerability has been identified in Micro Focus ArcSight Management Center. The vulnerability could be remotely exploited resulting in s… Arcsight Management Center 2.9.6+ Fix from $1,6002023-12-09 HIGH 7.2 CVE-2023-32268 Exposure of Proxy Administrator Credentials An authenticated administrator equivalent Filr user can access the credentials of proxy administrators. Filr 23.2.1+ Fix from $1,9502023-12-06 CRITICAL 9.8 CVE-2023-5913 Incorrect Privilege Assignment vulnerability in opentext Fortify ScanCentral DAST. The vulnerability could be exploited to gain elevated privileges.T… Fortify Scancentral Dast Mitigation only Fix from $2,3002023-11-08 MEDIUM 6.1 CVE-2023-4964 Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.… Asset Management X Mitigation only Fix from $1,6002023-10-30 CRITICAL 9.8 CVE-2023-4501 User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer,… Cobol Server Mitigation only Fix from $2,3002023-09-12 HIGH 8.8 CVE-2023-32267 A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Management Center. The vulnerability could be remotely exploited. Arcsight Management Center 3.2.1+ Fix from $1,9502023-08-11 MEDIUM 6.5 CVE-2023-32265 A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component used in Enterprise Server… Cobol Server Mitigation only Fix from $1,6002023-07-20 MEDIUM 6.5 CVE-2023-32261 A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows attackers with Overall/Re… Dimensions Cm 0.9.3.1+ Fix from $1,6002023-07-19 MEDIUM 6.5 CVE-2023-32262 A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows attackers with Item/Confi… Dimensions Cm 0.9.3.1+ Fix from $1,6002023-07-19 MEDIUM 5.7 CVE-2023-32263 A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability could be exploited to retrieve a… Dimensions Cm after 0.9.3 Fix from $1,6002023-07-19 CRITICAL 9.1 CVE-2023-24470 Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. Arcsight Logger 7.3.0+ Fix from $2,3002023-06-13 MEDIUM 6.1 CVE-2023-24469 Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 Arcsight Logger after 7.3.0 Fix from $1,6002023-06-13