CVE Vulnerabilities

CVE-2021-22504

Published: Feb 12, 2021 | Modified: Nov 07, 2023
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Arbitrary code execution vulnerability on Micro Focus Operations Bridge Manager product, affecting versions 10.1x, 10.6x, 2018.05, 2018.11, 2019.05, 2019.11, 2020.05, 2020.10. The vulnerability could allow remote attackers to execute arbitrary code on an OBM server.

Affected Software

Name Vendor Start Version End Version
Operations_bridge_manager Microfocus 10.10 (including) 10.10 (including)
Operations_bridge_manager Microfocus 10.11 (including) 10.11 (including)
Operations_bridge_manager Microfocus 10.12 (including) 10.12 (including)
Operations_bridge_manager Microfocus 10.60 (including) 10.60 (including)
Operations_bridge_manager Microfocus 10.61 (including) 10.61 (including)
Operations_bridge_manager Microfocus 10.62 (including) 10.62 (including)
Operations_bridge_manager Microfocus 10.63 (including) 10.63 (including)
Operations_bridge_manager Microfocus 2018.05 (including) 2018.05 (including)
Operations_bridge_manager Microfocus 2018.11 (including) 2018.11 (including)
Operations_bridge_manager Microfocus 2019.05 (including) 2019.05 (including)
Operations_bridge_manager Microfocus 2019.11 (including) 2019.11 (including)
Operations_bridge_manager Microfocus 2020.05 (including) 2020.05 (including)
Operations_bridge_manager Microfocus 2020.10 (including) 2020.10 (including)

References