Arbitrary Code Execution Vulnerability in Micro Focus Operations Bridge Manager
CVE-2021-22504

9.8CRITICAL

Key Information:

Vendor

Microfocus

Vendor
CVE Published:
12 February 2021

What is CVE-2021-22504?

The vulnerability found in Micro Focus Operations Bridge Manager allows remote attackers to execute arbitrary code on the server. Affected versions include 10.1x, 10.6x, and several releases from 2018 to 2020. This security flaw poses a significant risk as it could enable unauthorized access and manipulation of sensitive data on the affected systems. It is essential for users to update their software and apply available patches to mitigate potential exploitation of this vulnerability.

Affected Version(s)

Operations Bridge Manager. 10.1x, 10.6x, 2018.05, 2018.11, 2019.05, 2019.11, 2020.05, 2020.10

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.