CVE-2021-22515

Description

Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in NetIQ Advanced Authentication versions prior to 6.3 SP4 Patch 1.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
0.194

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in OpenText Netiq Advanced Authentication 6.2-patch_update3Windows
Multiple Vulnerabilities are affected in OpenText Netiq Advanced Authentication 6.3Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234