CVE-2020-9524
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross Site scripting vulnerability on Micro Focus Enterprise Server and Enterprise developer, affecting all versions prior to version 5.0 Patch Update 8. The vulnerability could allow an attacker to trigger administrative actions when an administrator viewed malicious data left by the attacker (stored XSS) or followed a malicious link (reflected XSS).
Una vulnerabilidad de tipo Cross Site scripting en Micro Focus Enterprise Server y el desarrollador Enterprise, afecta a todas las versiones anteriores a 5.0 Patch Update 8. La vulnerabilidad podrĂa permitir a un atacante desencadenar acciones administrativas cuando un administrador visualizara datos maliciosos dejados por el atacante (XSS almacenado) o siguiera un enlace malicioso (XSS reflejado).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-03-01 CVE Reserved
- 2020-05-18 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://softwaresupport.softwaregrp.com/doc/KM03640252 | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | - |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p1 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p2 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p3 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p4 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p5 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p6 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Developer Search vendor "Microfocus" for product "Enterprise Developer" | 5.0 Search vendor "Microfocus" for product "Enterprise Developer" and version "5.0" | p7 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | - |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p1 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p2 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p3 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p4 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p5 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p6 |
Affected
| ||||||
Microfocus Search vendor "Microfocus" | Enterprise Server Search vendor "Microfocus" for product "Enterprise Server" | 5.0 Search vendor "Microfocus" for product "Enterprise Server" and version "5.0" | p7 |
Affected
|