Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that account's security.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://softwaresupport.softwaregrp.com/doc/KM03634936 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: microfocus
Published: 2020-04-17T14:18:04
Updated: 2024-08-04T10:34:38.203Z
Reserved: 2020-03-01T00:00:00
Link: CVE-2020-9523
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-04-17T15:15:12.930
Modified: 2024-11-21T05:40:48.023
Link: CVE-2020-9523
Redhat
No data.