CVE-2023-4501
- EPSS 0.17%
- Veröffentlicht 12.09.2023 19:15:36
- Zuletzt bearbeitet 21.11.2024 08:35:18
User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), versions 7.0 patc...
CVE-2023-32265
- EPSS 0.16%
- Veröffentlicht 20.07.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 08:03:00
A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component used in Enterprise Server, Enterprise Test Server, Enterprise Developer, Visual COBOL, and COBOL Server. An attacker would ne...
CVE-2020-9524
- EPSS 0.21%
- Veröffentlicht 18.05.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:40:48
Cross Site scripting vulnerability on Micro Focus Enterprise Server and Enterprise developer, affecting all versions prior to version 5.0 Patch Update 8. The vulnerability could allow an attacker to trigger administrative actions when an administrato...
CVE-2020-9523
- EPSS 0.29%
- Veröffentlicht 17.04.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:40:48
Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit ha...
CVE-2019-11651
- EPSS 0.24%
- Veröffentlicht 02.10.2019 21:15:10
- Zuletzt bearbeitet 21.11.2024 04:21:31
Reflected XSS on Micro Focus Enterprise Developer and Enterprise Server, all versions prior to version 3.0 Patch Update 20, version 4.0 Patch Update 12, and version 5.0 Patch Update 2. The vulnerability could be exploited to redirect a user to a mali...
CVE-2018-12469
- EPSS 0.34%
- Veröffentlicht 12.10.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:16
Incorrect handling of an invalid value for an HTTP request parameter by Directory Server (aka Enterprise Server Administration web UI) in Micro Focus Enterprise Developer and Enterprise Server 2.3 Update 2 and earlier, 3.0 before Patch Update 12, and...
CVE-2017-5187
- EPSS 0.25%
- Veröffentlicht 21.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A Cross-Site Request Forgery (CWE-352) vulnerability in Directory Server (aka Enterprise Server Administration web UI) in Micro Focus Enterprise Developer and Enterprise Server 2.3 and earlier, 2.3 Update 1 before Hotfix 8, and 2.3 Update 2 before Ho...
CVE-2017-7420
- EPSS 0.23%
- Veröffentlicht 21.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An Authentication Bypass (CWE-287) vulnerability in ESMAC (aka Enterprise Server Monitor and Control) in Micro Focus Enterprise Developer and Enterprise Server 2.3 and earlier, 2.3 Update 1 before Hotfix 8, and 2.3 Update 2 before Hotfix 9 allows rem...
CVE-2017-7421
- EPSS 0.17%
- Veröffentlicht 21.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Reflected and stored Cross-Site Scripting (XSS, CWE-79) vulnerabilities in Directory Server (aka Enterprise Server Administration web UI) and ESMAC (aka Enterprise Server Monitor and Control) in Micro Focus Enterprise Developer and Enterprise Server ...
CVE-2017-7422
- EPSS 0.1%
- Veröffentlicht 21.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Reflected and stored Cross-Site Scripting (XSS, CWE-79) vulnerabilities in esfadmingui in Micro Focus Enterprise Developer and Enterprise Server 2.3, 2.3 Update 1 before Hotfix 8, and 2.3 Update 2 before Hotfix 9 allow remote authenticated attackers ...