Vulnerability index

Browse CVEs

245 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Access Manager MEDIUM 6.1
CVE-2026-11878

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText Access Manager allows Cross-Site Scrip…

Fix: 5.1+
Fix from $1,600 2026-06-24
Access Manager HIGH 7.5
CVE-2026-11877

An unauthorized user can modify configuration through API calls that affects the OpenText Access Manager. This issue affects Access Manager before 5.…

Fix: 5.1+
Fix from $1,950 2026-06-24
Operations Agent HIGH 7.8
CVE-2026-2123

A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under specific conditions Operations Age…

Fix: after 12.29
Fix from $1,950 2026-03-31
Imanager CRITICAL 9.8
CVE-2021-38135

Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.

Fix: after 3.2.5
Fix from $2,300 2024-11-22
Imanager CRITICAL 9.8
CVE-2023-24466

Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200.

Fix: 3.2.6+
Fix from $2,300 2024-11-22
Imanager CRITICAL 9.8
CVE-2023-24467

Possible Command Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0000.

Fix: 3.2.6+
Fix from $2,300 2024-11-22
Imanager MEDIUM 6.1
CVE-2021-38119

Possible Reflected Cross-Site Scripting (XSS) Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.

Fix: 3.2.5+
Fix from $1,600 2024-11-22
Imanager MEDIUM 6.1
CVE-2021-38134

Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.5.0000.

Fix: 3.2.6+
Fix from $1,600 2024-11-22
Imanager MEDIUM 5.4
CVE-2022-26324

Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.6.0000.

Mitigation only
Fix from $1,600 2024-11-22
Imanager CRITICAL 9.8
CVE-2021-38117

Possible Command injection Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.

Fix: 3.2.5+
Fix from $2,300 2024-11-22
Imanager HIGH 8.8
CVE-2021-38116

Possible Elevation of Privilege Vulnerability in iManager has been discovered in OpenText™ iManager. This impacts all versions before 3.2.5

Fix: 3.2.5+
Fix from $1,950 2024-11-22
Imanager HIGH 7.8
CVE-2021-38118

Possible improper input validation Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.

Fix: 3.2.5+
Fix from $1,950 2024-11-22
Arcsight Management Center MEDIUM 6.1
CVE-2024-9841

A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSight Platform. The vulnerabil…

Fix: 3.2.5 / 24.2.2+
Fix from $1,600 2024-11-08
Imanager MEDIUM 5.4
CVE-2020-11859

Improper Input Validation vulnerability in OpenText iManager allows Cross-Site Scripting (XSS). This issue affects iManager before 3.2.3

Fix: 3.2.3+
Fix from $1,600 2024-11-06
Application Automation Tools HIGH 8.0
CVE-2024-4184

Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects …

Fix: after 24.1.0
Fix from $1,950 2024-10-16
Application Automation Tools HIGH 8.0
CVE-2024-4189

Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects …

Fix: after 24.1.0
Fix from $1,950 2024-10-16
Application Automation Tools HIGH 8.0
CVE-2024-4690

Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects …

Fix: after 24.1.0
Fix from $1,950 2024-10-16
Vertica CRITICAL 9.8
CVE-2024-6360

Incorrect Permission Assignment for Critical Resource vulnerability in OpenText™ Vertica could allow Privilege Abuse and result in unauthorized acces…

Fix: 12.0.4-30 / 23.3.0-11+
Fix from $2,300 2024-10-02
Edirectory CRITICAL 9.8
CVE-2021-38132

Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000.

Fix: 9.2.6.0000+
Fix from $2,300 2024-09-12
Edirectory MEDIUM 6.5
CVE-2021-38133

Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000.

Fix: 9.2.6.0000+
Fix from $1,600 2024-09-12
Edirectory CRITICAL 9.1
CVE-2021-22533

Possible Insertion of Sensitive Information into Log File Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.4.0000.

Fix: 9.2.4.0000+
Fix from $2,300 2024-09-12
Edirectory MEDIUM 6.1
CVE-2021-38131

Possible Cross-Site Scripting (XSS) Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.5.0000.

Fix: 9.2.5.0000+
Fix from $1,600 2024-09-12
Edirectory HIGH 7.5
CVE-2021-22532

Possible NLDAP Denial of Service attack Vulnerability in eDirectory has been discovered in OpenText™ eDirectory before 9.2.4.0000.

Fix: 9.2.4.0000+
Fix from $1,950 2024-09-12
Edirectory MEDIUM 6.1
CVE-2021-22503

Possible Improper Neutralization of Input During Web Page Generation Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.3.…

Fix: 9.2.3.0000+
Fix from $1,600 2024-09-12
Netiq Access Manager HIGH 7.5
CVE-2024-4556

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText NetIQ Access Manager allows access the sensi…

Fix: 5.0.4+
Fix from $1,950 2024-08-28
Netiq Access Manager HIGH 7.5
CVE-2024-4555

Improper Privilege Management vulnerability in OpenText NetIQ Access Manager allows user account impersonation in specific scenario. This issue affec…

Fix: 5.0.4.1+
Fix from $1,950 2024-08-28
Netiq Access Manager MEDIUM 5.4
CVE-2024-4554

Improper Input Validation vulnerability in OpenText NetIQ Access Manager leads to Cross-Site Scripting (XSS) attack. This issue affects Access Manage…

Fix: 5.0.4.1+
Fix from $1,600 2024-08-28
Netiq Advanced Authentication HIGH 8.2
CVE-2021-38122

A Cross-Site Scripting vulnerable identified in NetIQ Advance Authentication that impacts the server functionality and disclose sensitive information…

Fix: 6.3+
Fix from $1,950 2024-08-28
Netiq Advanced Authentication HIGH 8.8
CVE-2021-38121

Insufficient or weak TLS protocol version identified in Advance authentication client server communication when specific service is accessed between …

Fix: 6.3+
Fix from $1,950 2024-08-28
Netiq Advanced Authentication HIGH 7.2
CVE-2021-38120

A vulnerability identified in Advance Authentication that allows bash command Injection in administrative controlled functionality of backup due to i…

Fix: 6.3+
Fix from $1,950 2024-08-28