CVE-2019-11653

EUVD-2019-3323
Remote Access Control Bypass in Micro Focus Content Manager. versions 9.1, 9.2, 9.3. The vulnerability could be exploited to manipulate data stored during another user’s CheckIn request.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.4 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
Affected Products (NVD)
VendorProductVersion
microfocuscontent_manager
9.1.0:patch6_hotfix1
microfocuscontent_manager
9.1.0:patch6_hotfix2
microfocuscontent_manager
9.1.0:patch6_hotfix3
microfocuscontent_manager
9.1.0:patch6_hotfix4
microfocuscontent_manager
9.1.0:patch6_hotfix5
microfocuscontent_manager
9.2.0:patch3_hotfix1
microfocuscontent_manager
9.3.0:patch2_hotfix1
microfocuscontent_manager
9.3.0:patch2_hotfix2
𝑥
= Vulnerable software versions