CVE-2024-3483

Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger command injection and insecure deserialization issues.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microfocus:imanager:*:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:3.2.6:patch1:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:3.2.6:patch2:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:3.2.6:patch3:*:*:*:*:*:*

History

21 Jan 2025, 17:24

Type Values Removed Values Added
CPE cpe:2.3:a:microfocus:imanager:3.2.6:patch3:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:3.2.6:patch2:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:*:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:imanager:3.2.6:patch1:*:*:*:*:*:*
References () https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html - () https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html - Release Notes
First Time Microfocus
Microfocus imanager

Information

Published : 2024-05-15 17:15

Updated : 2025-01-21 17:24


NVD link : CVE-2024-3483

Mitre link : CVE-2024-3483

CVE.ORG link : CVE-2024-3483


JSON object : View

Products Affected

microfocus

  • imanager
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

CWE-434

Unrestricted Upload of File with Dangerous Type

CWE-502

Deserialization of Untrusted Data