CVE-2024-3967

Remote Code
Execution has been discovered in
OpenText iManager 3.2.6.0200.The vulnerability can
trigger remote code execution unisng unsafe java object deserialization.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.6 HIGH
ADJACENT_NETWORK
HIGH
LOW
CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
OpenTextCNA
7.6 HIGH
ADJACENT_NETWORK
HIGH
LOW
CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 43%
VendorProductVersion
microfocusimanager
3.0 ≤
𝑥
< 3.2.6
microfocusimanager
3.2.6
microfocusimanager
3.2.6:patch1
microfocusimanager
3.2.6:patch2
microfocusimanager
3.2.6:patch3
𝑥
= Vulnerable software versions