CVE-2019-18946 – Session fixation
https://notcve.org/view.php?id=CVE-2019-18946
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to session fixation. Micro Focus Solutions Business Manager Application Repository versiones anteriores a 11.7.1, son vulnerables a una fijación de sesiones • http://knowledgebase.serena.com/resources/sites/KNOWLEDGEBASE/content/live/SOLUTIONS/142000/S142001/en_US/sbm_11.7.1_security_bulletin.htm • CWE-384: Session Fixation •
CVE-2019-3477
https://notcve.org/view.php?id=CVE-2019-3477
Micro Focus Solution Business Manager versions prior to 11.4.2 is susceptible to open redirect. Fue encontrada una Vulnerabilidad en las versiones de Micro Focus Solution Business Manager anteriores hasta la versión 11.4.2 son susceptibles a redireccionamiento abierto. • http://help.serena.com/doc_center/sbm/ver11_4_2/sbm_release_notes.htm • CWE-601: URL Redirection to Untrusted Site ('Open Redirect') •
CVE-2018-19643 – Solutions Business Manager (SBM) Information Leakage issue in version prior to 11.5
https://notcve.org/view.php?id=CVE-2018-19643
Information leakage issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5. Existe un problema de filtrado de información en Micro Focus Solutions Business Manager (SBM), anteriormente conocido como Serena Business Manager (SBM), en versiones anteriores a la 11.5. • http://help.serena.com/doc_center/sbm/ver11_5/sbm_release_notes.htm • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2018-19644 – Solutions Business Manager (SBM) reflected cross site script issue in version prior to 11.5
https://notcve.org/view.php?id=CVE-2018-19644
Reflected cross site script issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5. Existe un problema de Cross-Site Scripting (XSS) reflejado en Micro Focus Solutions Business Manager (SBM), anteriormente conocido como Serena Business Manager (SBM), en versiones anteriores a la 11.5. • http://help.serena.com/doc_center/sbm/ver11_5/sbm_release_notes.htm • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2018-19642 – Solutions Business Manager (SBM) Denial of Service issue in version prior to 11.5
https://notcve.org/view.php?id=CVE-2018-19642
Denial of service issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5. Existe un problema de denegación de servicio (DoS) en Micro Focus Solutions Business Manager (SBM), anteriormente conocido como Serena Business Manager (SBM), en versiones anteriores a la 11.5. • http://help.serena.com/doc_center/sbm/ver11_5/sbm_release_notes.htm • CWE-20: Improper Input Validation •