Vulnerability index

Browse CVEs

245 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2017-14355 A potential security vulnerability has been identified in HPE Connected Backup versions 8.6 and 8.8.6. The vulnerability could be exploited locally t… Connected Backup No fix yet Fix from $1,9502017-12-05 HIGH 7.5 CVE-2017-9272 The Bi-directional driver in IDM 4.5 before 4.0.3.0 could be susceptible to a denial of service attack. Bi Directional Driver after 4.0.2.0 Fix from $1,9502017-10-06 MEDIUM 5.3 CVE-2017-9273 The Bi-directional driver in IDM 4.5 before 4.0.3.0 could be susceptible to unauthorized log configuration changes. Bi Directional Driver after 4.0.2.0 Fix from $1,6002017-10-06 CRITICAL 9.8 CVE-2017-9282 An integer overflow (CWE-190) led to an out-of-bounds write (CWE-787) on a heap-allocated area, leading to heap corruption in Micro Focus VisiBroker … Visibroker No fix yet Fix from $2,3002017-09-21 CRITICAL 9.8 CVE-2017-9283 An out-of-bounds read (CWE-125) vulnerability exists in Micro Focus VisiBroker 8.5. The feasibility of leveraging this vulnerability for further atta… Visibroker No fix yet Fix from $2,3002017-09-21 HIGH 7.5 CVE-2017-9281 An integer overflow (CWE-190) potentially causing an out-of-bounds read (CWE-125) vulnerability in Micro Focus VisiBroker 8.5 can lead to a denial of… Visibroker Mitigation only Fix from $1,9502017-09-21 CRITICAL 9.8 CVE-2017-7420 An Authentication Bypass (CWE-287) vulnerability in ESMAC (aka Enterprise Server Monitor and Control) in Micro Focus Enterprise Developer and Enterpr… Enterprise Developer after 2.3 Fix from $2,3002017-08-21 HIGH 8.8 CVE-2017-5187 A Cross-Site Request Forgery (CWE-352) vulnerability in Directory Server (aka Enterprise Server Administration web UI) in Micro Focus Enterprise Deve… Directory Server after 2.3 Fix from $1,9502017-08-21 HIGH 8.8 CVE-2017-7423 A Cross-Site Request Forgery (CWE-352) vulnerability in esfadmingui in Micro Focus Enterprise Developer and Enterprise Server 2.3, 2.3 Update 1 befor… Enterprise Developer Mitigation only Fix from $1,9502017-08-21 MEDIUM 6.5 CVE-2017-7424 A Path Traversal (CWE-22) vulnerability in esfadmingui in Micro Focus Enterprise Developer and Enterprise Server 2.3, 2.3 Update 1 before Hotfix 8, a… Enterprise Developer Mitigation only Fix from $1,6002017-08-21 MEDIUM 6.1 CVE-2017-7421 Reflected and stored Cross-Site Scripting (XSS, CWE-79) vulnerabilities in Directory Server (aka Enterprise Server Administration web UI) and ESMAC (… Directory Server after 2.3 Fix from $1,6002017-08-21 MEDIUM 5.4 CVE-2017-7422 Reflected and stored Cross-Site Scripting (XSS, CWE-79) vulnerabilities in esfadmingui in Micro Focus Enterprise Developer and Enterprise Server 2.3,… Enterprise Developer Mitigation only Fix from $1,6002017-08-21 HIGH 7.5 CVE-2017-5185 A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow remote denial of service. Sentinel 8.0.1+ Fix from $1,9502017-03-30 MEDIUM 5.3 CVE-2017-5184 A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow leakage of information (account enumeration). Sentinel 8.0.1+ Fix from $1,6002017-03-30 MEDIUM 6.5 CVE-2016-5765 Administrative Server in Micro Focus Host Access Management and Security Server (MSS) and Reflection for the Web (RWeb) and Reflection Security Gatew… Host Access Management And Security Server Mitigation only Fix from $1,6002016-11-29 CRITICAL 9.8 CVE-2016-9176 Stack buffer overflow in the send.exe and receive.exe components of Micro Focus Rumba 9.4 and earlier could be used by local attackers or attackers a… Rumba after 9.4.0 Fix from $2,3002016-11-04 HIGH 8.8 CVE-2016-5764EPSS 8% Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (… Rumba Ftp No fix yet Fix from $1,9502016-10-27 CRITICAL 9.8 CVE-2016-5228EPSS 15% Stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx in Micro Focus Rumba 9.x before 9.3 HF 11997 and 9… Rumba No fix yet Fix from $2,3002016-07-03 CRITICAL 9.8 CVE-2016-1606EPSS 46% Multiple stack-based buffer overflows in COM objects in Micro Focus Rumba 9.4.x before 9.4 HF 13960 allow remote attackers to execute arbitrary code … Rumba Mitigation only Fix from $2,3002016-07-03 MEDIUM 6.1 CVE-2016-1599 Cross-site scripting (XSS) vulnerability in NetIQ Self Service Password Reset (SSPR) 2.x and 3.x before 3.3.1 HF2 allows remote attackers to inject a… Self Service Password Reset Mitigation only Fix from $1,6002016-03-24 HIGH 8.0 CVE-2016-1991 HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authent… Arcsight Enterprise Security Manager after 5.6 Fix from $1,9502016-03-16 HIGH 7.8 CVE-2016-1990 HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to… Arcsight Enterprise Security Manager after 5.6 Fix from $1,9502016-03-16 HIGH 9.3 CVE-2015-6946EPSS 21% Multiple stack-based buffer overflows in the Reprise License Manager service in Borland AccuRev allow remote attackers to execute arbitrary code via … Accurev No fix yet Fix from $1,9502015-09-15 MEDIUM 6.8 CVE-2015-0795 Multiple stack-based buffer overflows in the SafeShellExecute method in the NetIQExecObject.NetIQExec.1 ActiveX control in NetIQExec.dll in NetIQ Sec… Security Solutions For Iseries Mitigation only Fix from $1,6002015-07-18 HIGH 10.0 CVE-2014-7885 Multiple unspecified vulnerabilities in HP ArcSight Enterprise Security Manager (ESM) before 6.8c have unknown impact and remote attack vectors. Arcsight Enterprise Security Manager after 6.5c Fix from $1,9502015-03-14 MEDIUM 6.8 CVE-2014-5217 Cross-site request forgery (CSRF) vulnerability in nps/servlet/webacc in the Administration Console server in NetIQ Access Manager (NAM) 4.x before 4… Access Manager No fix yet Fix from $1,6002014-12-23 HIGH 7.5 CVE-2014-0602 Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in NetIQ Security Manager through 6.5.4 allows remote a… Security Manager after 6.5.4 Fix from $1,9502014-07-07 MEDIUM 6.8 CVE-2014-3460 Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in Agent Manager in NetIQ Sentinel allows remote attack… Sentinel Mitigation only Fix from $1,6002014-05-20 HIGH 10.0 CVE-2012-0432EPSS 59% Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecifie… Edirectory Mitigation only Fix from $1,9502012-12-25 MEDIUM 6.4 CVE-2012-0430 Unspecified vulnerability in NetIQ eDirectory 8.8.6.x before 8.8.6.7 and 8.8.7.x before 8.8.7.2 on Windows allows remote attackers to obtain an admin… Edirectory Mitigation only Fix from $1,6002012-12-25