Vulnerabilities (CVE)

Filtered by vendor Microfocus Subscribe
Filtered by product Netiq Self Service Password Reset
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-11674 1 Microfocus 1 Netiq Self Service Password Reset 2019-10-24 4.3 MEDIUM 5.9 MEDIUM
Man-in-the-middle vulnerability in Micro Focus Self Service Password Reset, affecting all versions prior to 4.4.0.4. The vulnerability could exploit invalid certificate validation and may result in a man-in-the-middle attack.
CVE-2019-11647 1 Microfocus 1 Netiq Self Service Password Reset 2019-07-09 4.3 MEDIUM 6.1 MEDIUM
A potential XSS exists in Self Service Password Reset, in Micro Focus NetIQ Software all versions prior to version 4.4. The vulnerability could be exploited to enable an XSS attack.