Vulnerabilities > Microfocus

DATE CVE VULNERABILITY TITLE RISK
2023-06-13 CVE-2023-24470 XXE vulnerability in Microfocus Arcsight Logger
Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.
network
low complexity
microfocus CWE-611
critical
9.1
2023-06-13 CVE-2023-24469 Cross-site Scripting vulnerability in Microfocus Arcsight Logger
Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0
network
low complexity
microfocus CWE-79
6.1
2022-12-23 CVE-2022-38757 Improper Privilege Management vulnerability in Microfocus Zenworks 2020
A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions.
network
low complexity
microfocus CWE-269
7.2
2022-12-16 CVE-2022-38756 Information Exposure Through Log Files vulnerability in Microfocus Groupwise
A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2.
network
low complexity
microfocus CWE-532
4.3
2022-12-08 CVE-2022-38754 Cross-site Scripting vulnerability in Microfocus Operations Bridge and Operations Bridge Manager
A potential vulnerability has been identified in Micro Focus Operations Bridge - Containerized.
network
low complexity
microfocus CWE-79
5.4
2022-11-28 CVE-2022-38753 Unspecified vulnerability in Microfocus Netiq Advanced Authentication
This update resolves a multi-factor authentication bypass attack
network
low complexity
microfocus
6.3
2022-11-21 CVE-2022-38755 Unspecified vulnerability in Microfocus Filr
A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1.
network
low complexity
microfocus
5.3
2022-08-31 CVE-2022-26330 Unspecified vulnerability in Microfocus Arcsight Logger
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger.
network
low complexity
microfocus
7.5
2022-08-31 CVE-2022-26331 Cross-site Scripting vulnerability in Microfocus Arcsight Logger
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger.
network
low complexity
microfocus CWE-79
6.1
2022-05-12 CVE-2021-22531 Cross-site Scripting vulnerability in Microfocus Access Manager 4.5/5.0
A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability.
network
low complexity
microfocus CWE-79
6.1