CVE-2024-3486

CRITICAL WAF: High
CVSS 9.8 Published: 2024-05-15
CWE-611 CWE-611

XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information disclosure and remote code execution.

WAF Coverage Analysis

XML External Entity (XXE) High WAF Coverage

OWASP: A05:2021 Security Misconfiguration

941xxx - XSS / XXE
XML External Entity (XXE) High WAF Coverage

OWASP: A05:2021 Security Misconfiguration

941xxx - XSS / XXE

Affected Software

VendorProductVersion
microfocusimanager3.0 - 3.2.6
microfocusimanager3.2.6
microfocusimanager3.2.6
microfocusimanager3.2.6
microfocusimanager3.2.6

References

Back to CVE Database