CVE-2021-38123

MEDIUM

Micro Focus Network Automation - Open Redirect

Title source: llm
STIX 2.1

Description

Open Redirect vulnerability in Micro Focus Network Automation, affecting Network Automation versions 10.4x, 10.5x, 2018.05, 2018.11, 2019.05, 2020.02, 2020.08, 2020.11, 2021.05. The vulnerability could allow redirect users to malicious websites after authentication.

References (1)

Core 1
Core References
Various Sources x_refsource_misc
https://portal.microfocus.com/s/article/KM000001673

Scores

CVSS v3 6.1
EPSS 0.0023
EPSS Percentile 46.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-601
Status published
Products (9)
microfocus/network_automation 10.40
microfocus/network_automation 10.50
microfocus/network_automation 2018.05
microfocus/network_automation 2018.11
microfocus/network_automation 2019.05
microfocus/network_automation 2020.02
microfocus/network_automation 2020.08
microfocus/network_automation 2020.11
microfocus/network_automation 2021.05
Published Sep 07, 2021
Tracked Since Feb 18, 2026