CVE-2021-22509

A vulnerability identified in storing and reusing information in Advance Authentication. This issue can lead to leakage of sensitive data to unauthorized user. The issue affects NetIQ Advance Authentication before 6.3.5.1
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.1 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
OpenTextCNA
8.1 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
VendorProductVersion
microfocusnetiq_advanced_authentication
𝑥
< 6.3.5.1
microfocusnetiq_advanced_authentication
𝑥
< 6.3
microfocusnetiq_advanced_authentication
6.3
microfocusnetiq_advanced_authentication
6.3:sp1
microfocusnetiq_advanced_authentication
6.3:sp2
microfocusnetiq_advanced_authentication
6.3:sp3
microfocusnetiq_advanced_authentication
6.3:sp4
microfocusnetiq_advanced_authentication
6.3:sp4_patch1
microfocusnetiq_advanced_authentication
6.3:sp5
𝑥
= Vulnerable software versions