![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38116 – Possible Command injection Vulnerability in OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38116
22 Nov 2024 — Possible Elevation of Privilege Vulnerability in iManager has been discovered in OpenText™ iManager. This impacts all versions before 3.2.5 Possible Elevation of Privilege Vulnerability in iManager has been discovered in OpenText™ iManager. This impacts all versions before 3.2.5 • https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38117 – Possible Remote Code Execution Vulnerability OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38117
22 Nov 2024 — Possible Command injection Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000. • https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html • CWE-94: Improper Control of Generation of Code ('Code Injection') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38118 – Possible Local Privilege Escalation Vulnerability in OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38118
22 Nov 2024 — Possible improper input validation Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000. • https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html • CWE-250: Execution with Unnecessary Privileges •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38119 – Possible Reflected Cross-Site Scripting (XSS) Vulnerability in OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38119
22 Nov 2024 — Possible Reflected Cross-Site Scripting (XSS) Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000. • https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38134 – Possible Reflected and Stored XSS in OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38134
22 Nov 2024 — Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.5.0000. • https://www.netiq.com/documentation/imanager-32/imanager326_releasenotes/data/imanager326_releasenotes.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-38135 – Possible External service interaction Vulnerability in OpenText iManager
https://notcve.org/view.php?id=CVE-2021-38135
22 Nov 2024 — Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000. • https://www.netiq.com/documentation/imanager-32/imanager326_releasenotes/data/imanager326_releasenotes.html • CWE-406: Insufficient Control of Network Message Volume (Network Amplification) CWE-918: Server-Side Request Forgery (SSRF) •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2022-26324 – Possible XSS in iManager URL for access Component
https://notcve.org/view.php?id=CVE-2022-26324
22 Nov 2024 — Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.6.0000. Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.6.0000. • https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch1_releasenotes/imanager326_patch1_releasenotes.pdf • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2023-24466 – Possible XML External Entity Injection in OpenText iManager
https://notcve.org/view.php?id=CVE-2023-24466
22 Nov 2024 — Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200. Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200. • https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch3_releasenotes/imanager326_patch3_releasenotes.pdf • CWE-611: Improper Restriction of XML External Entity Reference •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2023-24467 – Possible Command Injection in OpenText iManager
https://notcve.org/view.php?id=CVE-2023-24467
22 Nov 2024 — Possible Command Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0000. Possible Command Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0000. • https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch3_releasenotes/imanager326_patch3_releasenotes.pdf • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2024-4429 – Cross Site Request Forgery vulnerability in iManager
https://notcve.org/view.php?id=CVE-2024-4429
28 May 2024 — Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to sensitive information disclosure. Se ha descubierto una vulnerabilidad de Cross-Site Request Forgery en OpenText™ iManager 3.2.6.0200. Esto podría dar lugar a la divulgación de información confidencial. Cross-Site Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. • https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html • CWE-352: Cross-Site Request Forgery (CSRF) •