CVE-2021-22504

CRITICAL

Micro Focus Operations Bridge Manager - RCE

Title source: llm
STIX 2.1

Description

Arbitrary code execution vulnerability on Micro Focus Operations Bridge Manager product, affecting versions 10.1x, 10.6x, 2018.05, 2018.11, 2019.05, 2019.11, 2020.05, 2020.10. The vulnerability could allow remote attackers to execute arbitrary code on an OBM server.

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0302
EPSS Percentile 86.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (13)
microfocus/operations_bridge_manager 10.10
microfocus/operations_bridge_manager 10.11
microfocus/operations_bridge_manager 10.12
microfocus/operations_bridge_manager 10.60
microfocus/operations_bridge_manager 10.61
microfocus/operations_bridge_manager 10.62
microfocus/operations_bridge_manager 10.63
microfocus/operations_bridge_manager 2018.05
microfocus/operations_bridge_manager 2018.11
microfocus/operations_bridge_manager 2019.05
... and 3 more
Published Feb 12, 2021
Tracked Since Feb 18, 2026