Vulnerabilities > CVE-2021-22515 - Incorrect Authorization vulnerability in Microfocus Netiq Advanced Authentication

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
microfocus
CWE-863

Summary

Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in NetIQ Advanced Authentication versions prior to 6.3 SP4 Patch 1.

Common Weakness Enumeration (CWE)