Vulnerabilities > Netiq > High

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2022-26322 Information Exposure Through Log Files vulnerability in Netiq Identity Manager Rest Driver
Possible Insertion of Sensitive Information into Log File Vulnerability in Identity Manager has been discovered in OpenTextâ„¢ Identity Manager REST Driver.
network
low complexity
netiq CWE-532
7.5
2019-06-24 CVE-2019-11648 Information Exposure vulnerability in Netiq Self Service Password Reset
An information leakage exists in Micro Focus NetIQ Self Service Password Reset Software all versions prior to version 4.4.
network
low complexity
netiq CWE-200
7.5
2018-07-10 CVE-2018-12461 Improper Certificate Validation vulnerability in Netiq Edirectory 9.1.1
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
network
low complexity
netiq CWE-295
7.5
2018-04-26 CVE-2017-9284 Information Exposure vulnerability in Netiq Identity Manager 4.6/4.6.1/4.6.2
IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.
network
low complexity
netiq CWE-200
7.5
2018-03-26 CVE-2018-7673 Unspecified vulnerability in Netiq Identity Manager 4.5
The NetIQ Identity Manager communication channel, in versions prior to 4.7, is susceptible to a DoS attack.
network
low complexity
netiq
7.5
2018-03-26 CVE-2018-1348 Unspecified vulnerability in Netiq Identity Manager 4.5
NetIQ Identity Manager driver, in versions prior to 4.7, allows for an SSL handshake renegotiation which could result in a MITM attack.
network
high complexity
netiq
7.4
2018-03-21 CVE-2018-1346 Unspecified vulnerability in Netiq Edirectory
Addresses denial of service attack to eDirectory versions prior to 9.1.
network
low complexity
netiq
7.5
2018-03-21 CVE-2018-1345 Unspecified vulnerability in Netiq Imanager 2.7.7
NetIQ iManager, versions prior to 3.1, under some circumstances could be susceptible to an elevation of privilege attack.
network
low complexity
netiq
8.8
2018-03-21 CVE-2018-1344 Unspecified vulnerability in Netiq Imanager 2.7.7
Addresses potential communication downgrade attack in NetIQ iManager versions prior to 3.1
network
low complexity
netiq
8.6
2018-03-14 CVE-2018-7677 Cross-Site Request Forgery (CSRF) vulnerability in Netiq Access Manager 4.4
A CSRF exposure exists in NetIQ Access Manager (NAM) 4.4 Identity Server component.
network
low complexity
netiq CWE-352
8.8