An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability could allow local attackers on the OBR host to execute code with escalated privileges.
References
Link | Resource |
---|---|
https://softwaresupport.softwaregrp.com/doc/KM03710590 | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-20-1217/ | Third Party Advisory |
Configurations
Information
Published : 2020-09-22 07:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-11855
Mitre link : CVE-2020-11855
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
microfocus
- operation_bridge_reporter