Known Vulnerabilities for products from Microfocus
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Microfocus".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-2123 json | A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under specific c... | Not Provided | 2026-03-31 | 2026-04-03 |
| CVE-2023-32267 json | A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Management Center. The vulnerability could b... | 8.8 - HIGH | 2023-08-11 | 2023-08-21 |
| CVE-2023-32265 json | A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component ... | 6.5 - MEDIUM | 2023-07-20 | 2023-07-31 |
| CVE-2023-32263 json | A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability could b... | 5.7 - MEDIUM | 2023-07-19 | 2023-07-28 |
| CVE-2023-32262 json | A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows ... | 6.5 - MEDIUM | 2023-07-19 | 2023-07-28 |
| CVE-2023-32261 json | A potential vulnerability has been identified in the Micro Focus Dimensions CM Plugin for Jenkins. The vulnerability allows ... | 6.5 - MEDIUM | 2023-07-19 | 2023-07-28 |
| CVE-2023-24470 json | Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. | 9.1 - CRITICAL | 2023-06-13 | 2023-11-07 |
| CVE-2023-24469 json | Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 | 6.1 - MEDIUM | 2023-06-13 | 2023-11-07 |
| CVE-2023-5913 json | Incorrect Privilege Assignment vulnerability in opentext Fortify ScanCentral DAST. The vulnerability could be exploited to g... | 9.8 - CRITICAL | 2023-11-08 | 2023-11-16 |
| CVE-2023-4964 json | Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11,... | 6.1 - MEDIUM | 2023-10-30 | 2023-11-08 |
| CVE-2023-4501 json | User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Serve... | 9.8 - CRITICAL | 2023-09-12 | 2023-09-19 |
| CVE-2022-38757 json | A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows admi... | 7.2 - HIGH | 2022-12-23 | 2023-11-07 |
| CVE-2022-38756 json | A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2. The GW Web component makes a re... | 4.3 - MEDIUM | 2022-12-16 | 2023-11-07 |
| CVE-2022-38755 json | A vulnerability has been identified in Micro Focus Filr in versions prior to 4.3.1.1. The vulnerability could be exploited to... | 5.3 - MEDIUM | 2022-11-21 | 2023-11-07 |
| CVE-2022-38754 json | A potential vulnerability has been identified in Micro Focus Operations Bridge - Containerized. The vulnerability could be ex... | 5.4 - MEDIUM | 2022-12-08 | 2023-11-07 |
| CVE-2022-38753 json | This update resolves a multi-factor authentication bypass attack | 6.3 - MEDIUM | 2022-11-28 | 2023-11-07 |
| CVE-2022-26331 json | Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploite... | 6.1 - MEDIUM | 2022-08-31 | 2023-11-07 |
| CVE-2022-26330 json | Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploite... | 7.5 - HIGH | 2022-08-31 | 2023-11-07 |
| CVE-2022-26326 json | Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access Manager prior to 5.0.2 | 6.1 - MEDIUM | 2022-05-02 | 2023-11-07 |
| CVE-2022-26325 json | Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.2 | 6.1 - MEDIUM | 2022-05-02 | 2023-11-07 |
Known software with vulnerabilities from Microfocus
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Microfocus | Access Manager | 4.1 |
| Application | Microfocus | Accurev | - |
| Application | Microfocus | Acutoweb | - |
| Application | Microfocus | Application Performance Management | 9.26 |
| Application | Microfocus | Arcsight Enterprise Security Manager Express | 5.6 |
| Application | Microfocus | Arcsight Logger | 6.61 |
| Application | Microfocus | Arcsight Management Center | - |
| Application | Microfocus | Autopass License Server | 10.3.0 |
| Application | Microfocus | Connected Backup | 8.6 |
| Application | Microfocus | Content Manager | 9.1 |
| Application | Microfocus | Data Center Automation | 2017.01 |
| Application | Microfocus | Data Protector | 10.00 |
| Application | Microfocus | Edirectory | 8.6 |
| Application | Microfocus | Enterpriselink | 5.0 |
| Application | Microfocus | Enterprise Developer | 5.0 |
| Application | Microfocus | Enterprise Server | 5.0 |
| Application | Microfocus | Filr | 3.0 |
| Application | Microfocus | Fortify Software Security Center | 17.10 |
| Application | Microfocus | Groupwise | 18 |
| Application | Microfocus | Hybrid Cloud Management | 2018.05 |