microfocus

271 tracked vulnerabilities.

CVE-2021-22499 MEDIUM
Micro Focus Application Performance Management <9.51 - XSS
Feb 06, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-22498 HIGH
Micro Focus Application Lifecycle Management 12.x-12.60 Patch 5, 15.0.1 Patch 2, 15.5 - XML External Entity Injection
Jan 19, 2021
CVSS 8.1
EPSS 0.00
CVE-2020-11859 HIGH
OpenText iManager < 3.2.3 - Cross-Site Scripting
Nov 06, 2024
CVSS 7.6
EPSS 0.00
CVE-2020-11847 HIGH
NetIQ Privileged Access Manager < 3.7.0.1 - Authenticated OS Command Injection via SSH
Aug 21, 2024
CVSS 8.2
EPSS 0.00
CVE-2020-11846 HIGH
OpenText Privileged Access Manager < 3.7.0.1 - Unauthenticated Privilege Escalation via Token Cookie
Aug 21, 2024
CVSS 8.7
EPSS 0.00
CVE-2020-11850 HIGH
OpenText Self Service Password Reset < 4.5.0.2 and 4.4.0.6 - Cross-Site Scripting
Aug 21, 2024
CVSS 7.3
EPSS 0.00
CVE-2020-25835 MEDIUM
Micro Focus ArcSight Management Center 2.9.0-2.9.5 - Stored Cross-Site Scripting
Dec 09, 2023
CVSS 5.9
EPSS 0.00
CVE-2020-25840 MEDIUM
Micro Focus Access Manager < 5.0 - Cross-Site Scripting
Mar 26, 2021
CVSS 6.1
EPSS 0.00
CVE-2020-25838 MEDIUM
Micro Focus Filr <4.x - Info Disclosure
Dec 11, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-25839 CRITICAL
NetIQ Identity Manager < 4.8 SP2 HF1 - SQL Injection
Nov 20, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-25833 MEDIUM
Micro Focus IDOL < 12.7 - Stored Cross-Site Scripting
Nov 17, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-25832 MEDIUM
Micro Focus Filr 4.2.1 - Reflected Cross-Site Scripting
Nov 17, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-11851 CRITICAL
Micro Focus ArcSight Logger < 7.1.1 - Remote Code Execution
Nov 17, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-25834 MEDIUM
Micro Focus ArcSight Logger < 7.1.1 - Cross-Site Scripting
Nov 17, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-11860 MEDIUM
Micro Focus ArcSight Logger < 7.1.1 - Cross-Site Scripting
Nov 17, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-25837 HIGH
Micro Focus Self Service Password Reset 4.4.0.0-4.4.0.6 and 4.5.0.1-4.5.0.2 - Sensitive Information Disclosure
Nov 05, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-11858 HIGH
Micro Focus Operation Bridge - Privilege Escalation
Oct 27, 2020
CVSS 7.8
EPSS 0.02
CVE-2020-11854 CRITICAL NUCLEI
Microfocus Application Performance Management - Hard-coded Credentials
Oct 27, 2020
CVSS 9.8
EPSS 0.92
CVE-2020-11853 HIGH NUCLEI
Micro Focus Operation Bridge Manager - Remote Code Execution
Oct 22, 2020
CVSS 8.8
EPSS 0.93
CVE-2020-11856 CRITICAL
Micro Focus Operation Bridge Reporter < 10.40 - Remote Code Execution
Sep 22, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-11857 CRITICAL
Micro Focus Operation Bridge Reporter < 10.40 - Authorization Bypass via Default Credentials
Sep 22, 2020
CVSS 9.8
EPSS 0.63
CVE-2020-11855 HIGH
Micro Focus Operation Bridge Reporter < 10.40 - Local Privilege Escalation via Incorrect Permission Assignment
Sep 22, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-11861 HIGH
Micro Focus Operation Agent <12.11 - Privilege Escalation
Sep 18, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-11848 HIGH
Micro Focus ArcSight Management Center < 2.9.5 - Denial of Service
Aug 19, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-11852 HIGH
Micro Focus Secure Messaging Gateway < 2020-07-01 - Authenticated OS Command Injection via DKIM Key Management Page
Aug 07, 2020
CVSS 8.8
EPSS 0.00