Show filters
19 Total Results
Displaying 1-10 of 19
Sort by:
Attacker Value
Unknown

CVE-2024-7085

Disclosure Date: January 15, 2025 (last updated January 16, 2025)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ Solutions Business Manager (SBM) allows Stored XSS.  The vulnerability could result in the exposure of private information to an unauthorized actor. This issue affects Solutions Business Manager (SBM): through 12.2.1.
0
Attacker Value
Unknown

CVE-2022-4974

Disclosure Date: October 16, 2024 (last updated October 16, 2024)
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions in versions up to, and including 2.4.2. Any WordPress plugin or theme running a version of Freemius less than 2.4.3 is vulnerable.
Attacker Value
Unknown

CVE-2019-18945

Disclosure Date: February 26, 2021 (last updated February 22, 2025)
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to privilege escalation vulnerability.
Attacker Value
Unknown

CVE-2019-18947

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to information disclosure.
Attacker Value
Unknown

CVE-2019-18946

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to session fixation.
Attacker Value
Unknown

CVE-2019-18944

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to reflected XSS.
Attacker Value
Unknown

CVE-2019-18943

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to XML External Entity Processing (XXE) on certain operations.
Attacker Value
Unknown

CVE-2019-18942

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to stored XSS. The application reflects previously stored user input without encoding.
Attacker Value
Unknown

CVE-2019-3477

Disclosure Date: June 07, 2019 (last updated November 08, 2023)
Micro Focus Solution Business Manager versions prior to 11.4.2 is susceptible to open redirect.
0
Attacker Value
Unknown

Solutions Business Manager (SBM) reflected cross site script issue in version p…

Disclosure Date: March 27, 2019 (last updated November 08, 2023)
Reflected cross site script issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.
0