Microfocus
microfocus
273 CVEs • 97 products
Products (97)
Click to collapseToggle
Products (97)
Click to collapse
CVEs (273)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microfocus 1Netiq Directory And Resource Administrator Jun 17, 2026 Sep 28, 2021 N/A· v4 4.9 MEDIUM· v3 2.7 LOW· v2 Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) product, affecting all DRA versions prior to 10.1 Patch 1. The vulnerability could lead to unauthorized...Show more |
Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4 |
Information leakage vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4 |
Open Redirection vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4 |
Injection attack caused the denial of service vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4 |
1Microfocus 1Network Automation Jun 17, 2026 Sep 7, 2021 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Open Redirect vulnerability in Micro Focus Network Automation, affecting Network Automation versions 10.4x, 10.5x, 2018.05, 2018.11, 2019.05, 2020.02, 2020.08, 2020.11, 2021.05. The vulnerability could allow redirect use...Show more |
This release addresses a potential information leakage vulnerability in NetIQ Access Manager versions prior to 5.0.1 |
A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 and 10.91. A...Show more |
1Microfocus 2Zenworks Configuration Management Zenworks Endpoint Security ManagementJun 17, 2026 Jul 30, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 A privileged escalation vulnerability has been identified in Micro Focus ZENworks Configuration Management, affecting version 2020 Update 1 and all prior versions. The vulnerability could be exploited to gain unauthorize...Show more |
1Microfocus 1Verastream Host Integrator Jun 17, 2026 Jul 22, 2021 N/A· v4 7.6 HIGH· v3 6.8 MEDIUM· v2 XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier versions. The vulnerability could allow the control of web browser and hijacking user sessions. |
1Microfocus 1Verastream Host Integrator Jun 17, 2026 Jul 22, 2021 N/A· v4 7.1 HIGH· v3 6.8 MEDIUM· v2 Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Update 1 and earlier versions. The vulnerability could allow disclosure of confidential data. |
1Microfocus 1Netiq Advanced Authentication Jun 17, 2026 Jul 12, 2021 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in NetIQ Advanced Authentication versions prior to 6.3 SP4 Patch 1. |
1Microfocus 1Secure Api Manager Jun 17, 2026 Jun 4, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affecting version 2.0.0. The vulnerability could lead to sensitive information being in a log file. |
Execute arbitrary code vulnerability in Micro Focus SiteScope product, affecting versions 11.40,11.41 , 2018.05(11.50), 2018.08(11.51), 2018.11(11.60), 2019.02(11.70), 2019.05(11.80), 2019.08(11.90), 2019.11(11.91), 2020...Show more |
1Microfocus 1Application Performance Management Jun 17, 2026 Apr 28, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An arbitrary code execution vulnerability exists in Micro Focus Application Performance Management, affecting versions 9.40, 9.50 and 9.51. The vulnerability could allow remote attackers to execute arbitrary code on affe...Show more |
1Microfocus 1Operations Agent Jun 17, 2026 Apr 13, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Escalation of privileges vulnerability in Micro Focus Operations Agent, affects versions 12.0x, 12.10, 12.11, 12.12, 12.14 and 12.15. The vulnerability could be exploited to escalate privileges and execute code under the...Show more |
1Microfocus 1Netiq Advanced Authentication Jun 17, 2026 Apr 12, 2021 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Advanced Authentication versions prior to 6.3 SP4 have a potential broken authentication due to improper session management issue. |
1Microfocus 1Application Automation Tools Jun 17, 2026 Apr 8, 2021 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Missing Authorization vulnerability in Micro Focus Application Automation Tools Plugin - Jenkins plugin. The vulnerability affects version 6.7 and earlier versions. The vulnerability could allow access without permission...Show more |
1Microfocus 1Application Automation Tools Jun 17, 2026 Apr 8, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Cross-Site Request Forgery (CSRF) vulnerability in Micro Focus Application Automation Tools Plugin - Jenkins plugin. The vulnerability affects version 6.7 and earlier versions. The vulnerability could allow form validati...Show more |
1Microfocus 1Application Automation Tools Jun 17, 2026 Apr 8, 2021 N/A· v4 6.5 MEDIUM· v3 6.4 MEDIUM· v2 Improper Certificate Validation vulnerability in Micro Focus Application Automation Tools Plugin - Jenkins plugin. The vulnerability affects version 6.7 and earlier versions. The vulnerability could allow unconditionally...Show more |