Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2024-1470 Authorization Bypass Through User-Controlled Key vulnerability in NetIQ (OpenText) Client Login Extension on Windows allows Privilege Escalation, Cod… Client Login Extension Mitigation only Fix from $1,9502024-02-29 MEDIUM 6.1 CVE-2018-12462 NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities. Imanager No fix yet Fix from $1,6002018-07-10 HIGH 7.5 CVE-2018-12461 Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation. Edirectory Mitigation only Fix from $1,9502018-07-10 HIGH 8.8 CVE-2018-7677 A CSRF exposure exists in NetIQ Access Manager (NAM) 4.4 Identity Server component. Access Manager Mitigation only Fix from $1,9502018-03-14 HIGH 7.5 CVE-2017-5189 NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extrac… Imanager Mitigation only Fix from $1,9502018-03-02 CRITICAL 9.8 CVE-2018-1342 A Vulnerability exists on Admin Console where an attacker can upload files to the Admin Console server, and potentially execute them. This impacts Ne… Access Manager Mitigation only Fix from $2,3002018-01-26 CRITICAL 9.8 CVE-2017-14803EPSS 35% In NetIQ Access Manager 4.3 and 4.4, a bug exists in Identity Server when accessing a basic SSO connector and downloading the BasicSSO connector plug… Access Manager Mitigation only Fix from $2,3002018-01-20 MEDIUM 5.3 CVE-2017-7428 NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat. Imanager No fix yet Fix from $1,6002017-05-03 MEDIUM 6.1 CVE-2017-5191 An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages do not validate the HTTP Ref… Access Manager Mitigation only Fix from $1,6002017-04-24 MEDIUM 6.1 CVE-2017-5183 NetIQ Access Manager 4.2.2 and 4.3.x before 4.3.1+, when configured as an Identity Server, has XSS in the AssertionConsumerServiceURL field of a sign… Access Manager Mitigation only Fix from $1,6002017-04-20 CRITICAL 9.8 CVE-2016-5757 iManager Admin Console in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to iFrame manipulation attacks, which c… Access Manager Mitigation only Fix from $2,3002017-03-23 HIGH 8.8 CVE-2016-1597 A logged-in user in NetIQ Access Governance Suite 6.0 through 6.4 could escalate privileges to administrator. Access Governance Suite Mitigation only Fix from $1,9502017-03-23 HIGH 8.8 CVE-2016-5750 The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to upload JSP pages … Access Manager Mitigation only Fix from $1,9502017-03-23 HIGH 8.8 CVE-2016-5758 A cross site request forgery protection mechanism in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be circumvented by re… Access Manager Mitigation only Fix from $1,9502017-03-23 HIGH 7.5 CVE-2016-5752 The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handling unsigned SAML requests inc… Access Manager Mitigation only Fix from $1,9502017-03-23 HIGH 7.5 CVE-2016-5754 Presence of a .htaccess file could leak information in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before SP2. Access Manager Mitigation only Fix from $1,9502017-03-23 MEDIUM 6.5 CVE-2016-5755 NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to clickjacking attacks due to a missing SAMEORIGIN filter in the… Access Manager Mitigation only Fix from $1,6002017-03-23 MEDIUM 6.1 CVE-2016-5751 An unfiltered finalizer target URL in the SAML processing feature in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.… Access Manager Mitigation only Fix from $1,6002017-03-23 MEDIUM 6.1 CVE-2016-5756 Multiple components of the web tools in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 were vulnerable to Reflected Cross Site … Access Manager Mitigation only Fix from $1,6002017-03-23 MEDIUM 5.5 CVE-2016-5748 External Entity Processing (XXE) vulnerability in the "risk score" application of NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.… Access Manager Mitigation only Fix from $1,6002017-03-23 MEDIUM 5.5 CVE-2016-5749 NetIQ Access Manager 4.1 before 4.1.2 HF 1 and 4.2 before 4.2.2 was parsing incoming SAML requests with external entity resolution enabled, which cou… Access Manager Mitigation only Fix from $1,6002017-03-23 MEDIUM 6.5 CVE-2016-1605 Directory traversal vulnerability in the ReportViewServlet servlet in the server in NetIQ Sentinel 7.4.x before 7.4.2 allows remote attackers to read… Sentinel Mitigation only Fix from $1,6002016-08-01 HIGH 7.5 CVE-2005-1244 Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, allows remote attackers to acc… Pssecure No fix yet Fix from $1,9502005-04-20