Vulnerabilities > Netiq

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2022-26322 Information Exposure Through Log Files vulnerability in Netiq Identity Manager Rest Driver
Possible Insertion of Sensitive Information into Log File Vulnerability in Identity Manager has been discovered in OpenText™ Identity Manager REST Driver.
network
low complexity
netiq CWE-532
7.5
2024-06-11 CVE-2020-11843 Unspecified vulnerability in Netiq Access Manager
This allows the information exposure to unauthorized users. This issue affects NetIQ Access Manager using version 4.5 or before
network
low complexity
netiq
6.5
2023-01-26 CVE-2022-26329 Exposure of Resource to Wrong Sphere vulnerability in Netiq Identity Manager
File existence disclosure vulnerability in NetIQ Identity Manager plugin prior to version 4.8.5 allows attacker to determine whether a file exists on the filesystem.
network
low complexity
netiq CWE-668
5.3
2023-01-26 CVE-2022-38758 Cross-site Scripting vulnerability in Netiq Imanager
Cross-site Scripting (XSS) vulnerability in NetIQ iManager prior to version 3.2.6 allows attacker to execute malicious scripts on the user's browser.
network
low complexity
netiq CWE-79
6.1
2019-06-24 CVE-2019-11648 Information Exposure vulnerability in Netiq Self Service Password Reset
An information leakage exists in Micro Focus NetIQ Self Service Password Reset Software all versions prior to version 4.4.
network
low complexity
netiq CWE-200
7.5
2018-07-10 CVE-2018-12462 Cross-site Scripting vulnerability in Netiq Imanager 3.1.1
NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities.
network
low complexity
netiq CWE-79
6.1
2018-07-10 CVE-2018-12461 Improper Certificate Validation vulnerability in Netiq Edirectory 9.1.1
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
network
low complexity
netiq CWE-295
7.5
2018-04-26 CVE-2017-9284 Information Exposure vulnerability in Netiq Identity Manager 4.6/4.6.1/4.6.2
IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.
network
low complexity
netiq CWE-200
7.5
2018-04-26 CVE-2017-9275 Cross-site Scripting vulnerability in Netiq Identity Reporting 5.5
NetIQ Identity Reporting, in versions prior to 5.5 Service Pack 1, is susceptible to an XSS attack.
network
low complexity
netiq CWE-79
6.1
2018-03-28 CVE-2018-7676 Information Exposure vulnerability in Netiq Identity Manager 4.5
The NetIQ Identity Manager, in versions prior to 4.7, userapp with log / trace enabled may leak sensitive information.
network
high complexity
netiq CWE-200
5.9