Microfocus
microfocus
273 CVEs • 97 products
Products (97)
Click to collapseToggle
Products (97)
Click to collapse
CVEs (273)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Je...Show more |
Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. |
Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 |
1Microfocus 1Netiq Advanced Authentication Jun 17, 2026 Mar 15, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2 |
A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows administrators with rights to perform actions (e.g., install a bundle) on a set of managed devices,...Show more |
A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2. The GW Web component makes a request to the Post Office Agent that contains sensitive information in the query parameters that...Show more |
1Microfocus 2Operations Bridge Operations Bridge ManagerJun 17, 2026 Dec 8, 2022 N/A· v4 5.4 MEDIUM· v3 N/A· v2 A potential vulnerability has been identified in Micro Focus Operations Bridge - Containerized. The vulnerability could be exploited by a malicious authenticated OBM (Operations Bridge Manager) user to run Java Scripts i...Show more |
1Microfocus 1Netiq Advanced Authentication Jun 17, 2026 Nov 28, 2022 N/A· v4 6.3 MEDIUM· v3 N/A· v2 This update resolves a multi-factor authentication bypass attack |
A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1. The vulnerability could be exploited to allow a remote unauthenticated attacker to enumerate valid users of the system. Remote unauthe...Show more |
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects:...Show more |
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects:...Show more |
A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability. This affects NetIQ Access Manager 4.5 and 5.0 |
1Microfocus 1Netiq Access Manager Jun 17, 2026 May 2, 2022 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access Manager prior to 5.0.2 |
1Microfocus 1Netiq Access Manager Jun 17, 2026 May 2, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.2 |
1Microfocus 1Operations Bridge Jun 17, 2026 Apr 11, 2022 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 Unauthenticated remote code execution in Micro Focus Operations Bridge containerized, affecting versions 2021.05, 2021.08, and newer versions of Micro Focus Operations Bridge containerized if the deployment was upgraded...Show more |
1Microfocus 1Voltage Securemail Jun 17, 2026 Feb 4, 2022 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A potential Information leakage vulnerability has been identified in versions of Micro Focus Voltage SecureMail Mail Relay prior to 7.3.0.1. The vulnerability could be exploited to create an information leakage attack. |
Escalation of privileges vulnerability in Micro Focus in Micro Focus Operations Agent, affecting versions 12.x up to and including 12.21. The vulnerability could be exploited by a non-privileged local user to access syst...Show more |
1Microfocus 1Arcsight Enterprise Security Manager Jun 17, 2026 Jan 14, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (X...Show more |
1Microfocus 1Arcsight Enterprise Security Manager Jun 17, 2026 Jan 14, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Potential vulnerabilities have been identified in Micro Focus ArcSight Enterprise Security Manager, affecting versions 7.4.x and 7.5.x. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (X...Show more |
1Microfocus 1Arcsight Enterprise Security Manager Jun 17, 2026 Sep 28, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Remote Code Execution vulnerability in Micro Focus ArcSight Enterprise Security Manager (ESM) product, affecting versions 7.0.2 through 7.5. The vulnerability could be exploited resulting in remote code execution. |