5.5
CVE-2019-11653
- EPSS 0.78%
- Veröffentlicht 07.08.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:21:32
- Erkennungen
Remote Access Control Bypass in Micro Focus Content Manager. versions 9.1, 9.2, 9.3. The vulnerability could be exploited to manipulate data stored during another user’s CheckIn request.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microfocus ≫ Content Manager Version 9.1.0 Update patch6_hotfix1
Microfocus ≫ Content Manager Version 9.1.0 Update patch6_hotfix2
Microfocus ≫ Content Manager Version 9.1.0 Update patch6_hotfix3
Microfocus ≫ Content Manager Version 9.1.0 Update patch6_hotfix4
Microfocus ≫ Content Manager Version 9.1.0 Update patch6_hotfix5
Microfocus ≫ Content Manager Version 9.2.0 Update patch3_hotfix1
Microfocus ≫ Content Manager Version 9.3.0 Update patch2_hotfix1
Microfocus ≫ Content Manager Version 9.3.0 Update patch2_hotfix2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.78% | 0.512 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.4 | 2.8 | 2.5 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
|
| NIST | 5.5 | 8 | 4.9 |
AV:N/AC:L/Au:S/C:P/I:P/A:N
|
https://ashsecurity.wordpress.com/2019/07/09/cm-cve/
https://softwaresupport.softwaregrp.com/doc/KM03489552