7.5
CVE-2021-22496
- EPSS 0.28%
- Veröffentlicht 25.03.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 05:50:13
- Quelle security@opentext.com
- CVE-Watchlists
- Unerledigt
Authentication Bypass Vulnerability in Micro Focus Access Manager Product, affects all version prior to version 4.5.3.3. The vulnerability could cause information leakage.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microfocus ≫ Access Manager Version < 4.5.3.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.28% | 0.483 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.