microfocus
271 tracked vulnerabilities.
CVE-2021-22499
MEDIUM
Micro Focus Application Performance Management <9.51 - XSS
Feb 06, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-22498
HIGH
Micro Focus Application Lifecycle Management 12.x-12.60 Patch 5, 15.0.1 Patch 2, 15.5 - XML External Entity Injection
Jan 19, 2021
CVSS 8.1
EPSS 0.00
CVE-2020-11859
HIGH
OpenText iManager < 3.2.3 - Cross-Site Scripting
Nov 06, 2024
CVSS 7.6
EPSS 0.00
CVE-2020-11847
HIGH
NetIQ Privileged Access Manager < 3.7.0.1 - Authenticated OS Command Injection via SSH
Aug 21, 2024
CVSS 8.2
EPSS 0.00
CVE-2020-11846
HIGH
OpenText Privileged Access Manager < 3.7.0.1 - Unauthenticated Privilege Escalation via Token Cookie
Aug 21, 2024
CVSS 8.7
EPSS 0.00
CVE-2020-11850
HIGH
OpenText Self Service Password Reset < 4.5.0.2 and 4.4.0.6 - Cross-Site Scripting
Aug 21, 2024
CVSS 7.3
EPSS 0.00
CVE-2020-25835
MEDIUM
Micro Focus ArcSight Management Center 2.9.0-2.9.5 - Stored Cross-Site Scripting
Dec 09, 2023
CVSS 5.9
EPSS 0.00
CVE-2020-25840
MEDIUM
Micro Focus Access Manager < 5.0 - Cross-Site Scripting
Mar 26, 2021
CVSS 6.1
EPSS 0.00
CVE-2020-25838
MEDIUM
Micro Focus Filr <4.x - Info Disclosure
Dec 11, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-25839
CRITICAL
NetIQ Identity Manager < 4.8 SP2 HF1 - SQL Injection
Nov 20, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-25833
MEDIUM
Micro Focus IDOL < 12.7 - Stored Cross-Site Scripting
Nov 17, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-25832
MEDIUM
Micro Focus Filr 4.2.1 - Reflected Cross-Site Scripting
Nov 17, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-11851
CRITICAL
Micro Focus ArcSight Logger < 7.1.1 - Remote Code Execution
Nov 17, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-25834
MEDIUM
Micro Focus ArcSight Logger < 7.1.1 - Cross-Site Scripting
Nov 17, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-11860
MEDIUM
Micro Focus ArcSight Logger < 7.1.1 - Cross-Site Scripting
Nov 17, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-25837
HIGH
Micro Focus Self Service Password Reset 4.4.0.0-4.4.0.6 and 4.5.0.1-4.5.0.2 - Sensitive Information Disclosure
Nov 05, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-11858
HIGH
Micro Focus Operation Bridge - Privilege Escalation
Oct 27, 2020
CVSS 7.8
EPSS 0.02
CVE-2020-11854
CRITICAL
NUCLEI
Microfocus Application Performance Management - Hard-coded Credentials
Oct 27, 2020
CVSS 9.8
EPSS 0.92
CVE-2020-11853
HIGH
NUCLEI
Micro Focus Operation Bridge Manager - Remote Code Execution
Oct 22, 2020
CVSS 8.8
EPSS 0.93
CVE-2020-11856
CRITICAL
Micro Focus Operation Bridge Reporter < 10.40 - Remote Code Execution
Sep 22, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-11857
CRITICAL
Micro Focus Operation Bridge Reporter < 10.40 - Authorization Bypass via Default Credentials
Sep 22, 2020
CVSS 9.8
EPSS 0.63
CVE-2020-11855
HIGH
Micro Focus Operation Bridge Reporter < 10.40 - Local Privilege Escalation via Incorrect Permission Assignment
Sep 22, 2020
CVSS 7.8
EPSS 0.03
CVE-2020-11861
HIGH
Micro Focus Operation Agent <12.11 - Privilege Escalation
Sep 18, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-11848
HIGH
Micro Focus ArcSight Management Center < 2.9.5 - Denial of Service
Aug 19, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-11852
HIGH
Micro Focus Secure Messaging Gateway < 2020-07-01 - Authenticated OS Command Injection via DKIM Key Management Page
Aug 07, 2020
CVSS 8.8
EPSS 0.00
Products
imanager 22
solutions_business_manager 17
access_manager 16
edirectory 16
service_manager 16
enterprise_developer 12
enterprise_server 12
netiq_advanced_authentication 11
application_automation_tools 9
arcsight_logger 9
arcsight_enterprise_security_manager 8
arcsight_management_center 8
operations_agent 7
operations_bridge 7
filr 6
operations_bridge_manager 6
application_performance_management 5
netiq_access_manager 5
visibroker 5
fortify_software_security_center 4
netiq_self_service_password_reset 4
operation_bridge_reporter 4
sentinel 4
service_management_automation 4
verastream_host_integrator 4
content_manager 3
data_center_automation 3
data_protector 3
dimensions_cm 3
enterprise_server_monitor_and_control 3
Quick Filters