Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that account's security.
References
Link | Resource |
---|---|
https://softwaresupport.softwaregrp.com/doc/KM03634936 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: microfocus
Published: 2020-04-17T14:18:04
Updated: 2021-01-06T16:15:26
Reserved: 2020-03-01T00:00:00
Link: CVE-2020-9523
JSON object: View
NVD Information
Status : Modified
Published: 2020-04-17T15:15:12.930
Modified: 2023-11-07T03:26:57.967
Link: CVE-2020-9523
JSON object: View
Redhat Information
No data.
CWE