CVE-2024-4556
MEDIUMMicrofocus Netiq Access Manager < 5.0.4 - Path Traversal
Title source: ruleDescription
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText NetIQ Access Manager allows access the sensitive information. This issue affects NetIQ Access Manager before 5.0.4 and before 5.1.
References (2)
Scores
CVSS v3
5.7
EPSS
0.0010
EPSS Percentile
26.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N
Classification
CWE
CWE-22
Status
published
Affected Products (1)
microfocus/netiq_access_manager
< 5.0.4
Timeline
Published
Aug 28, 2024
Tracked Since
Feb 18, 2026