8.8
CVSSv3

CVE-2020-9523

Published: 17/04/2020 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version before 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an malicious user to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that account's security.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microfocus enterprise developer 4.0

microfocus enterprise developer 5.0

microfocus enterprise developer

microfocus enterprise server 4.0

microfocus enterprise server 5.0

microfocus enterprise server