3.5
CVSSv2

CVE-2020-9520

Published: 25/03/2020 Updated: 07/11/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

A stored XSS vulnerability exists in Micro Focus Vibe, affecting all Vibe version before 4.0.7. The vulnerability could allows a remote malicious user to craft and store malicious content into Vibe such that when the content is viewed by another user of the system, attacker controlled JavaScript will execute in the security context of the target user’s browser.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microfocus vibe

Exploits

Micro Focus Vibe version 406 suffers from a cross site scripting vulnerability ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> [SYSS-2019-047] Micro Focus Vibe - Cross-Site Scripting (CVE-2020-9520) <!--X-Subject-Header-End--> <!--X-Head-of-Mess ...