Lucene search

K
cvelistMicrofocusCVELIST:CVE-2020-9523
HistoryApr 17, 2020 - 2:18 p.m.

CVE-2020-9523

2020-04-1714:18:04
microfocus
www.cve.org

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%

Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that accountโ€™s security.

CNA Affected

[
  {
    "product": "Enterprise developer and server.",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "All version prior to version 4.0 Patch Update 16, and version 5.0 Patch Update 6."
      }
    ]
  }
]

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%

Related for CVELIST:CVE-2020-9523