Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code execution unisng unsafe java object deserialization.
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Imanager | Microfocus | 3.0 (including) | 3.2.6 (excluding) | 
| Imanager | Microfocus | 3.2.6 (including) | 3.2.6 (including) | 
| Imanager | Microfocus | 3.2.6-patch1 (including) | 3.2.6-patch1 (including) | 
| Imanager | Microfocus | 3.2.6-patch2 (including) | 3.2.6-patch2 (including) | 
| Imanager | Microfocus | 3.2.6-patch3 (including) | 3.2.6-patch3 (including) |