Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Client Login Extension HIGH 7.8
CVE-2024-1470

Authorization Bypass Through User-Controlled Key vulnerability in NetIQ (OpenText) Client Login Extension on Windows allows Privilege Escalation, Cod…

Mitigation only
Fix from $1,950 2024-02-29
Imanager MEDIUM 6.1
CVE-2018-12462

NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities.

No fix yet
Fix from $1,600 2018-07-10
Edirectory HIGH 7.5
CVE-2018-12461

Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.

Mitigation only
Fix from $1,950 2018-07-10
Access Manager HIGH 8.8
CVE-2018-7677

A CSRF exposure exists in NetIQ Access Manager (NAM) 4.4 Identity Server component.

Mitigation only
Fix from $1,950 2018-03-14
Imanager HIGH 7.5
CVE-2017-5189

NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extrac…

Mitigation only
Fix from $1,950 2018-03-02
Access Manager CRITICAL 9.8
CVE-2018-1342

A Vulnerability exists on Admin Console where an attacker can upload files to the Admin Console server, and potentially execute them. This impacts Ne…

Mitigation only
Fix from $2,300 2018-01-26
Access Manager CRITICAL 9.8
CVE-2017-14803EPSS 35%

In NetIQ Access Manager 4.3 and 4.4, a bug exists in Identity Server when accessing a basic SSO connector and downloading the BasicSSO connector plug…

Mitigation only
Fix from $2,300 2018-01-20
Imanager MEDIUM 5.3
CVE-2017-7428

NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat.

No fix yet
Fix from $1,600 2017-05-03
Access Manager MEDIUM 6.1
CVE-2017-5191

An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages do not validate the HTTP Ref…

Mitigation only
Fix from $1,600 2017-04-24
Access Manager MEDIUM 6.1
CVE-2017-5183

NetIQ Access Manager 4.2.2 and 4.3.x before 4.3.1+, when configured as an Identity Server, has XSS in the AssertionConsumerServiceURL field of a sign…

Mitigation only
Fix from $1,600 2017-04-20
Access Manager CRITICAL 9.8
CVE-2016-5757

iManager Admin Console in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to iFrame manipulation attacks, which c…

Mitigation only
Fix from $2,300 2017-03-23
Access Governance Suite HIGH 8.8
CVE-2016-1597

A logged-in user in NetIQ Access Governance Suite 6.0 through 6.4 could escalate privileges to administrator.

Mitigation only
Fix from $1,950 2017-03-23
Access Manager HIGH 8.8
CVE-2016-5750

The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to upload JSP pages …

Mitigation only
Fix from $1,950 2017-03-23
Access Manager HIGH 8.8
CVE-2016-5758

A cross site request forgery protection mechanism in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be circumvented by re…

Mitigation only
Fix from $1,950 2017-03-23
Access Manager HIGH 7.5
CVE-2016-5752

The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handling unsigned SAML requests inc…

Mitigation only
Fix from $1,950 2017-03-23
Access Manager HIGH 7.5
CVE-2016-5754

Presence of a .htaccess file could leak information in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before SP2.

Mitigation only
Fix from $1,950 2017-03-23
Access Manager MEDIUM 6.5
CVE-2016-5755

NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to clickjacking attacks due to a missing SAMEORIGIN filter in the…

Mitigation only
Fix from $1,600 2017-03-23
Access Manager MEDIUM 6.1
CVE-2016-5751

An unfiltered finalizer target URL in the SAML processing feature in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.…

Mitigation only
Fix from $1,600 2017-03-23
Access Manager MEDIUM 6.1
CVE-2016-5756

Multiple components of the web tools in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 were vulnerable to Reflected Cross Site …

Mitigation only
Fix from $1,600 2017-03-23
Access Manager MEDIUM 5.5
CVE-2016-5748

External Entity Processing (XXE) vulnerability in the "risk score" application of NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.…

Mitigation only
Fix from $1,600 2017-03-23
Access Manager MEDIUM 5.5
CVE-2016-5749

NetIQ Access Manager 4.1 before 4.1.2 HF 1 and 4.2 before 4.2.2 was parsing incoming SAML requests with external entity resolution enabled, which cou…

Mitigation only
Fix from $1,600 2017-03-23
Sentinel MEDIUM 6.5
CVE-2016-1605

Directory traversal vulnerability in the ReportViewServlet servlet in the server in NetIQ Sentinel 7.4.x before 7.4.2 allows remote attackers to read…

Mitigation only
Fix from $1,600 2016-08-01
Pssecure HIGH 7.5
CVE-2005-1244

Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, allows remote attackers to acc…

No fix yet
Fix from $1,950 2005-04-20