Show filters
263 Total Results
Displaying 141-150 of 263
Sort by:
Attacker Value
Unknown

CVE-2019-18942

Disclosure Date: November 21, 2019 (last updated February 22, 2025)
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to stored XSS. The application reflects previously stored user input without encoding.
Attacker Value
Unknown

CVE-2019-17085

Disclosure Date: November 18, 2019 (last updated November 08, 2023)
XXE attack vulnerability on Micro Focus Operations Agent, affected version 12.0, 12.01, 12.02, 12.03, 12.04, 12.05, 12.06, 12.10, 12.11. The vulnerability could be exploited to do an XXE attack on Operations Agent.
Attacker Value
Unknown

CVE-2019-11674

Disclosure Date: October 22, 2019 (last updated November 08, 2023)
Man-in-the-middle vulnerability in Micro Focus Self Service Password Reset, affecting all versions prior to 4.4.0.4. The vulnerability could exploit invalid certificate validation and may result in a man-in-the-middle attack.
Attacker Value
Unknown

CVE-2019-11651

Disclosure Date: October 02, 2019 (last updated November 08, 2023)
Reflected XSS on Micro Focus Enterprise Developer and Enterprise Server, all versions prior to version 3.0 Patch Update 20, version 4.0 Patch Update 12, and version 5.0 Patch Update 2. The vulnerability could be exploited to redirect a user to a malicious page or forge certain types of web requests.
Attacker Value
Unknown

CVE-2019-11663

Disclosure Date: September 18, 2019 (last updated November 08, 2023)
Clear text credentials are used to access managers app in Tomcat in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow sensitive data exposure.
Attacker Value
Unknown

CVE-2019-11664

Disclosure Date: September 18, 2019 (last updated November 08, 2023)
Clear text password in browser in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow sensitive data exposure.
Attacker Value
Unknown

CVE-2019-11661

Disclosure Date: September 18, 2019 (last updated November 08, 2023)
Allow changes to some table by non-SysAdmin in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. This vulnerability could be exploited to allow unauthorized access and modification of data.
Attacker Value
Unknown

CVE-2019-11662

Disclosure Date: September 18, 2019 (last updated November 08, 2023)
Class and method names in error message in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. This vulnerability could be exploited in some special cases to allow information exposure through an error message.
Attacker Value
Unknown

CVE-2019-11665

Disclosure Date: September 17, 2019 (last updated November 08, 2023)
Data exposure in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow sensitive data exposure.
Attacker Value
Unknown

CVE-2019-11666

Disclosure Date: September 17, 2019 (last updated November 08, 2023)
Insecure deserialization of untrusted data in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow insecure deserialization of untrusted data.