Security Manager
by Microfocus
CVEs (7)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-7720 | Cri | 0.64 | 9.8 | 0.01 | Aug 27, 2024 | HP Security Manager is potentially vulnerable to Remote Code Execution as a result of code vulnerability within the product's solution open-source libraries. | ||
| CVE-2022-46359 | Hig | 0.57 | 8.8 | 0.00 | Jan 30, 2023 | Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. | ||
| CVE-2022-46358 | Hig | 0.57 | 8.8 | 0.00 | Jan 30, 2023 | Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. | ||
| CVE-2022-46357 | Hig | 0.57 | 8.8 | 0.00 | Jan 30, 2023 | Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. | ||
| CVE-2022-46356 | Hig | 0.57 | 8.8 | 0.00 | Jan 30, 2023 | Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. | ||
| CVE-2014-0602 | 0.00 | — | 0.03 | Jul 7, 2014 | Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in NetIQ Security Manager through 6.5.4 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3460. | |||
| CVE-2005-1244 | 0.00 | — | 0.02 | Apr 20, 2005 | Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. NOTE: the vendor has disputed this… |
- risk 0.64cvss 9.8epss 0.01
HP Security Manager is potentially vulnerable to Remote Code Execution as a result of code vulnerability within the product's solution open-source libraries.
- risk 0.57cvss 8.8epss 0.00
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.
- risk 0.57cvss 8.8epss 0.00
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.
- risk 0.57cvss 8.8epss 0.00
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.
- risk 0.57cvss 8.8epss 0.00
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure.
- CVE-2014-0602Jul 7, 2014risk 0.00cvss —epss 0.03
Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in NetIQ Security Manager through 6.5.4 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3460.
- CVE-2005-1244Apr 20, 2005risk 0.00cvss —epss 0.02
Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. NOTE: the vendor has disputed this…