Vulnerabilities > Microfocus

DATE CVE VULNERABILITY TITLE RISK
2020-11-17 CVE-2020-11860 Cross-site Scripting vulnerability in Microfocus Arcsight Logger 6.61/7.0/7.0.1
Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1.
network
low complexity
microfocus CWE-79
6.1
2020-11-05 CVE-2020-25837 Unspecified vulnerability in Microfocus Self Service Password Reset
Sensitive information disclosure vulnerability in Micro Focus Self Service Password Reset (SSPR) product.
network
low complexity
microfocus
7.5
2020-10-27 CVE-2020-11858 Unspecified vulnerability in Microfocus Operations Bridge and Operations Bridge Manager
Code execution with escalated privileges vulnerability in Micro Focus products Operation Bridge Manager and Operation Bridge (containerized).
local
low complexity
microfocus
7.8
2020-10-27 CVE-2020-11854 Use of Hard-coded Credentials vulnerability in Microfocus products
Arbitrary code execution vlnerability in Operation bridge Manager, Application Performance Management and Operations Bridge (containerized) vulnerability in Micro Focus products products Operation Bridge Manager, Operation Bridge (containerized) and Application Performance Management.
network
low complexity
microfocus CWE-798
critical
9.8
2020-10-22 CVE-2020-11853 Arbitrary code execution vulnerability affecting multiple Micro Focus products.
network
low complexity
microfocus hp
8.8
2020-09-22 CVE-2020-11856 Missing Authentication for Critical Function vulnerability in Microfocus Operation Bridge Reporter
Arbitrary code execution vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier.
network
low complexity
microfocus CWE-306
critical
9.8
2020-09-22 CVE-2020-11857 Use of Hard-coded Credentials vulnerability in Microfocus Operation Bridge Reporter
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier.
network
low complexity
microfocus CWE-798
critical
9.8
2020-09-22 CVE-2020-11855 Incorrect Permission Assignment for Critical Resource vulnerability in Microfocus Operation Bridge Reporter
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier.
local
low complexity
microfocus CWE-732
7.8
2020-09-18 CVE-2020-11861 Unspecified vulnerability in Microfocus Operations Agent
Unauthorized escalation of local privileges vulnerability on Micro Focus Operation Agent, affecting all versions prior to versions 12.11.
local
low complexity
microfocus
7.8
2020-08-19 CVE-2020-11848 Unspecified vulnerability in Microfocus Arcsight Management Center
Denial of service vulnerability on Micro Focus ArcSight Management Center.
network
low complexity
microfocus
7.5