« Volver al listado

Microfocus

Microfocus Imanager: vulnerabilidades y CVE

Microfocus Imanager tiene 22 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 12 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE22
Últimos 12 meses0
Críticas12
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-24467Crítica (9.8)1.1%—22 nov 2024
Possible Command Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0000.
CVE-2023-24466Crítica (9.8)0.53%—22 nov 2024
Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200.
CVE-2022-26324Media (5.4)0.29%—22 nov 2024
Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.6.0000.
CVE-2021-38135Crítica (9.8)0.45%—22 nov 2024
Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.
CVE-2021-38134Media (6.1)0.29%—22 nov 2024
Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.5.0000.
CVE-2021-38119Media (6.1)0.31%—22 nov 2024
Possible Reflected Cross-Site Scripting (XSS) Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.
CVE-2021-38118Alta (7.8)0.21%—22 nov 2024
Possible improper input validation Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.
CVE-2021-38117Crítica (9.8)1.1%—22 nov 2024
Possible Command injection Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.
CVE-2021-38116Alta (8.8)0.62%—22 nov 2024
Possible Elevation of Privilege Vulnerability in iManager has been discovered in OpenText™ iManager. This impacts all versions before 3.2.5
CVE-2020-11859Media (5.4)0.33%—6 nov 2024
Improper Input Validation vulnerability in OpenText iManager allows Cross-Site Scripting (XSS). This issue affects iManager before 3.2.3
CVE-2024-4429Alta (7.4)0.18%—28 may 2024
Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to sensitive information disclosure.
CVE-2024-3969Crítica (9.8)0.50%—28 may 2024
XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to remote code execution by parsing untrusted XML payload
CVE-2024-3970Alta (7.5)0.51%—15 may 2024
Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure by directory traversal.
CVE-2024-3968Crítica (9.8)0.68%—15 may 2024
Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution using custom file upload task.
CVE-2024-3967Crítica (9.8)0.64%—15 may 2024
Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution unisng unsafe java object deserialization.
CVE-2024-3488Crítica (9.8)0.37%—15 may 2024
File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a file without authentication.
CVE-2024-3487Crítica (9.8)0.42%—15 may 2024
Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker to manipulate certain parameters to bypass authentication.
CVE-2024-3486Crítica (9.8)0.47%—15 may 2024
XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information disclosure and remote code execution.
CVE-2024-3485Alta (7.5)0.26%—15 may 2024
Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senstive information disclosure.
CVE-2024-3484Crítica (9.8)0.51%—15 may 2024
Path Traversal found in OpenText™ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure.
CVE-2024-3483Crítica (9.8)0.98%—15 may 2024
Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command injection and insecure deserialization issues.
CVE-2018-17949Media (6.1)0.65%—12 dic 2018
Cross site scripting vulnerability in iManager prior to 3.1 SP2.

Otros productos de Microfocus