Arbitrary code execution vulnerability affecting multiple Micro Focus products. 1.) Operation Bridge Manager affecting version: 2020.05, 2019.11, 2019.05, 2018.11, 2018.05, versions 10.6x and 10.1x and older versions. 2.) Application Performance Management affecting versions : 9.51, 9.50 and 9.40 with uCMDB 10.33 CUP 3 3.) Data Center Automation affected version 2019.11 4.) Operations Bridge (containerized) affecting versions: 2019.11, 2019.08, 2019.05, 2018.11, 2018.08, 2018.05, 2018.02, 2017.11 5.) Universal CMDB affecting version: 2020.05, 2019.11, 2019.05, 2019.02, 2018.11, 2018.08, 2018.05, 11, 10.33, 10.32, 10.31, 10.30 6.) Hybrid Cloud Management affecting version 2020.05 7.) Service Management Automation affecting version 2020.5 and 2020.02. The vulnerability could allow to execute arbitrary code.
Advisories

No advisories yet.

Fixes

Solution

For Operation Bridge Manager https://softwaresupport.softwaregrp.com/doc/KM03747658 For Application Performance Management https://softwaresupport.softwaregrp.com/doc/KM03747657 For Data Center Automation https://softwaresupport.softwaregrp.com/doc/KM03749879 For Operation Bridge (containerized) https://softwaresupport.softwaregrp.com/doc/KM03747854 For Hybrid Cloud Management https://softwaresupport.softwaregrp.com/doc/KM03747949 For Universal CMDB https://softwaresupport.softwaregrp.com/doc/KM03747948 For Service Management Automation https://softwaresupport.softwaregrp.com/doc/KM03747950


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: microfocus

Published:

Updated: 2024-08-04T11:42:00.549Z

Reserved: 2020-04-16T00:00:00

Link: CVE-2020-11853

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-22T21:15:12.747

Modified: 2024-11-21T04:58:45.563

Link: CVE-2020-11853

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.