Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-11844

Опубликовано: 29 мая 2020
Источник: nvd
CVSS3: 10
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Incorrect Authorization vulnerability in Micro Focus Container Deployment Foundation component affects products: - Hybrid Cloud Management. Versions 2018.05 to 2019.11. - ArcSight Investigate. versions 2.4.0, 3.0.0 and 3.1.0. - ArcSight Transformation Hub. versions 3.0.0, 3.1.0, 3.2.0. - ArcSight Interset. version 6.0.0. - ArcSight ESM (when ArcSight Fusion 1.0 is installed). version 7.2.1. - Service Management Automation (SMA). versions 2018.05 to 2020.02 - Operation Bridge Suite (Containerized). Versions 2018.05 to 2020.02. - Network Operation Management. versions 2017.11 to 2019.11. - Data Center Automation Containerized. versions 2018.05 to 2019.11 - Identity Intelligence. versions 1.1.0 and 1.1.1. The vulnerability could be exploited to provide unauthorized access to the Container Deployment Foundation.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:microfocus:service_management_automation:2018.05:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2018.08:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2018.11:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2019.02:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2019.05:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2019.08:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2019.11:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_management_automation:2020.02:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01028
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-863
CWE-863

Связанные уязвимости

github
больше 3 лет назад

There is an Incorrect Authorization vulnerability in Micro Focus Service Management Automation (SMA) product affecting version 2018.05 to 2020.02. The vulnerability could be exploited to provide unauthorized access to the Container Deployment Foundation.

EPSS

Процентиль: 77%
0.01028
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-863
CWE-863