CVE-2024-4556

MEDIUM

Microfocus Netiq Access Manager < 5.0.4 - Path Traversal

Title source: rule

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText NetIQ Access Manager allows access the sensitive information. This issue affects NetIQ Access Manager before 5.0.4 and before 5.1.

Scores

CVSS v3 5.7
EPSS 0.0010
EPSS Percentile 26.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N

Classification

CWE
CWE-22
Status published

Affected Products (1)

microfocus/netiq_access_manager < 5.0.4

Timeline

Published Aug 28, 2024
Tracked Since Feb 18, 2026