Known Vulnerabilities for products from Microfocus

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Microfocus".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-2123 json A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under specific c... Not Provided 2026-03-31 2026-04-03
CVE-2023-32267 json A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Management Center. The vulnerability could b... 8.8 - HIGH 2023-08-11 2023-08-21
CVE-2023-32265 json A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component ... 6.5 - MEDIUM 2023-07-20 2023-07-31
CVE-2023-32263 json A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability could b... 5.7 - MEDIUM 2023-07-19 2023-07-28
CVE-2023-32262 json A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows ... 6.5 - MEDIUM 2023-07-19 2023-07-28
CVE-2023-32261 json A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows ... 6.5 - MEDIUM 2023-07-19 2023-07-28
CVE-2023-24470 json Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. 9.1 - CRITICAL 2023-06-13 2023-11-07
CVE-2023-24469 json Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 6.1 - MEDIUM 2023-06-13 2023-11-07
CVE-2023-5913 json Incorrect Privilege Assignment vulnerability in opentext Fortify ScanCentral DAST. The vulnerability could be exploited to g... 9.8 - CRITICAL 2023-11-08 2023-11-16
CVE-2023-4964 json Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11,... 6.1 - MEDIUM 2023-10-30 2023-11-08
CVE-2023-4501 json User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Serve... 9.8 - CRITICAL 2023-09-12 2023-09-19
CVE-2022-38757 json A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows admi... 7.2 - HIGH 2022-12-23 2023-11-07
CVE-2022-38756 json A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2. The GW Web component makes a re... 4.3 - MEDIUM 2022-12-16 2023-11-07
CVE-2022-38755 json A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1. The vulnerability could be exploited to... 5.3 - MEDIUM 2022-11-21 2023-11-07
CVE-2022-38754 json A potential vulnerability has been identified in Micro Focus Operations Bridge - Containerized. The vulnerability could be ex... 5.4 - MEDIUM 2022-12-08 2023-11-07
CVE-2022-38753 json This update resolves a multi-factor authentication bypass attack 6.3 - MEDIUM 2022-11-28 2023-11-07
CVE-2022-26331 json Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploite... 6.1 - MEDIUM 2022-08-31 2023-11-07
CVE-2022-26330 json Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploite... 7.5 - HIGH 2022-08-31 2023-11-07
CVE-2022-26326 json Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access Manager prior to 5.0.2 6.1 - MEDIUM 2022-05-02 2023-11-07
CVE-2022-26325 json Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.2 6.1 - MEDIUM 2022-05-02 2023-11-07

Known software with vulnerabilities from Microfocus

Type Vendor Product Version
ApplicationMicrofocusAccess Manager4.1
ApplicationMicrofocusAccurev-
ApplicationMicrofocusAcutoweb-
ApplicationMicrofocusApplication Performance Management9.26
ApplicationMicrofocusArcsight Enterprise Security Manager Express5.6
ApplicationMicrofocusArcsight Logger6.61
ApplicationMicrofocusArcsight Management Center-
ApplicationMicrofocusAutopass License Server10.3.0
ApplicationMicrofocusConnected Backup8.6
ApplicationMicrofocusContent Manager9.1
ApplicationMicrofocusData Center Automation2017.01
ApplicationMicrofocusData Protector10.00
ApplicationMicrofocusEdirectory8.6
ApplicationMicrofocusEnterpriselink5.0
ApplicationMicrofocusEnterprise Developer5.0
ApplicationMicrofocusEnterprise Server5.0
ApplicationMicrofocusFilr3.0
ApplicationMicrofocusFortify Software Security Center17.10
ApplicationMicrofocusGroupwise18
ApplicationMicrofocusHybrid Cloud Management2018.05