Microfocus
microfocus
273 CVEs • 97 products
Products (97)
Click to collapseToggle
Products (97)
Click to collapse
CVEs (273)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microfocus 1Solutions Business Manager Nov 21, 2024 Mar 27, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Unauthenticated remote code execution issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5. |
Remote arbitrary code execution in Micro Focus Data Protector, version 10.03 this vulnerability could allow remote arbitrary code execution. |
NetIQ eDirectory versions prior to 9.0.2, under some circumstances, could be susceptible to downgrade of communication security. |
A local privilege escalation vulnerability in the famtd component of Micro Focus Filr 3.0 allows a local attacker authenticated as a low privilege user to escalate to root. This vulnerability affects all versions of Filr...Show more |
A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authenticated as a low privilege user to download arbitrary files from the Filr server. This vulnerability...Show more |
1Microfocus 1Solutions Business Manager Nov 21, 2024 Feb 12, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An Authentication Bypass issue exists in Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5. |
13Apache CanonicalD2iq+10 more19Backports Sle Container Development KitDc/os+16 moreJun 17, 2026 Feb 11, 2019 N/A· v4 8.6 HIGH· v3 9.3 HIGH· v2 runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as r...Show more |
1Microfocus 1Fortify Software Security Center Jun 17, 2026 Dec 13, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access |
1Microfocus 1Fortify Software Security Center Jun 17, 2026 Dec 13, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access |
Cross site scripting vulnerability in eDirectory prior to 9.1 SP2 |
Incorrect enforcement of authorization checks in eDirectory prior to 9.1 SP2 |
Cross site scripting vulnerability in iManager prior to 3.1 SP2. |
In Novell NetWare before 6.5 SP8, a stack buffer overflow in processing of CALLIT RPC calls in the NFS Portmapper daemon in PKERNEL.NLM allowed remote unauthenticated attackers to execute code, because a length field was...Show more |
An open redirect vulnerability exists in the Access Manager Identity Provider prior to 4.4 SP3. |
Mitigates an XSS issue in NetIQ Access Manager versions prior to 4.4 SP3. |
1Microfocus 1Service Manager Nov 21, 2024 Nov 13, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A potential unauthorized disclosure of data vulnerability has been identified in Micro Focus Service Manager versions: 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51. The vulnerability could be exploited to r...Show more |
A potential remote code execution and information disclosure vulnerability exists in Micro Focus Operations Bridge containerized suite versions 2017.11, 2018.02, 2018.05, 2018.08. This vulnerability could allow for infor...Show more |
1Microfocus 1Real User Monitoring Nov 21, 2024 Oct 23, 2018 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A potential Remote Arbitrary Code Execution vulnerability has been identified in Micro Focus' Real User Monitoring software, versions 9.26IP, 9.30, 9.40 and 9.50. The vulnerability could be exploited to execute arbitrary...Show more |
1Microfocus 2Enterprise Developer Enterprise ServerNov 21, 2024 Oct 12, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Incorrect handling of an invalid value for an HTTP request parameter by Directory Server (aka Enterprise Server Administration web UI) in Micro Focus Enterprise Developer and Enterprise Server 2.3 Update 2 and earlier, 3...Show more |
1Microfocus 1Arcsight Management Center Jun 17, 2026 Sep 20, 2018 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A potential Cross-Site Request Forgery (CSRF) vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Cross-Site Request F...Show more |