CVE-2021-22509

EUVD-2021-9655
A vulnerability identified in storing and reusing information in Advance Authentication. This issue can lead to leakage of sensitive data to unauthorized user. The issue affects NetIQ Advance Authentication before 6.3.5.1
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
OpenTextCNA
8.1 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
Affected Products (NVD)
VendorProductVersion
microfocusnetiq_advanced_authentication
𝑥
< 6.3.5.1
microfocusnetiq_advanced_authentication
𝑥
< 6.3
microfocusnetiq_advanced_authentication
6.3
microfocusnetiq_advanced_authentication
6.3:sp1
microfocusnetiq_advanced_authentication
6.3:sp2
microfocusnetiq_advanced_authentication
6.3:sp3
microfocusnetiq_advanced_authentication
6.3:sp4
microfocusnetiq_advanced_authentication
6.3:sp4_patch1
microfocusnetiq_advanced_authentication
6.3:sp5
𝑥
= Vulnerable software versions