CVE-2020-9521

An SQL injection vulnerability was discovered in Micro Focus Service Manager Automation (SMA), affecting versions 2019.08, 2019.05, 2019.02, 2018.08, 2018.05, 2018.02. The vulnerability could allow for the improper neutralization of special elements in SQL commands and may lead to the product being vulnerable to SQL injection.
References
Link Resource
https://softwaresupport.softwaregrp.com/doc/KM03630615 Patch Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microfocus:service_manager_automation:2018.02:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_manager_automation:2018.05:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_manager_automation:2018.08:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_manager_automation:2019.02:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_manager_automation:2019.05:*:*:*:*:*:*:*
cpe:2.3:a:microfocus:service_manager_automation:2019.08:*:*:*:*:*:*:*

Information

Published : 2020-03-26 08:15

Updated : 2020-03-30 09:00


NVD link : CVE-2020-9521

Mitre link : CVE-2020-9521


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

microfocus

  • service_manager_automation