VendorsMicro Focusnetiq_advanced_authenticationall versions
Vulnerabilities

Micro Focus NetIQ Advanced Authentication

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2021-22530
Improper account management vulnerability in NetIQ Advance Authentication
Published 2024-08-28 · Analyzed
9.9EPSS 0.002
CVE-2023-24468
Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2
Published 2023-03-15 · Analyzed
9.8EPSS 0.009
CVE-2021-38121
Weak communication protocol identified in Advance Authentication client application
Published 2024-08-28 · Analyzed
8.8EPSS 0.002
CVE-2021-38122
Cross-Site Scripting (XSS) in Advance Authentication
Published 2024-08-28 · Analyzed
8.2EPSS 0.003
CVE-2021-22509
Handling of sensitive data in process memory in NetIQ Advance Authentication
Published 2024-08-28 · Analyzed
8.1EPSS 0.002
CVE-2021-22497
Advanced Authentication Improper Session Management
Published 2021-04-12 · Modified
7.2EPSS 0.008
CVE-2021-38120
Remote Code Execution using Bash command Injection in backup scheduling functionality in NetIQ Advance Authentication
Published 2024-08-28 · Analyzed
7.2EPSS 0.005
CVE-2021-22515
Multi-Factor Authentication (MFA) downgrade exposure in NetIQ Advanced Authentication Server
Published 2021-07-12 · Modified
6.5EPSS 0.007
CVE-2022-38753
This update resolves a multi-factor authentication bypass attack
Published 2022-11-28 · Modified
6.3EPSS 0.005
CVE-2021-22529
Sensitive Data Exposure leaks potential information in NetIQ Advance Authentication
Published 2024-08-28 · Analyzed
6.3EPSS 0.002
CVE-2019-11650
A potential Man in the Middle attack (MITM) was found in NetIQ Advanced Authentication Framework versions prior to 6.0.
Published 2019-07-10 · Modified
5.9EPSS 0.008