Vulnerabilities > CVE-2021-22535 - Incorrect Authorization vulnerability in Microfocus Netiq Directory and Resource Administrator

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
microfocus
CWE-863

Summary

Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) product, affecting all DRA versions prior to 10.1 Patch 1. The vulnerability could lead to unauthorized information disclosure.

Common Weakness Enumeration (CWE)