CVE-2018-17948: Medium severity MicroFocus Access Manager vulnerability
Published Nov 20, 2018
·Updated
An open redirect vulnerability exists in the Access Manager Identity Provider prior to 4.4 SP3.
Affected Software
4 affected components
MicroFocus Access Manager<4.4
MicroFocus Access Manager=4.4
MicroFocus Access Manager=4.4-sp1
MicroFocus Access Manager=4.4-sp2
Event History
Nov 20, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2018-17948.
2
What is the severity of CVE-2018-17948?
The severity of CVE-2018-17948 is medium.
3
What is the affected software for CVE-2018-17948?
The affected software for CVE-2018-17948 is Microfocus Access Manager prior to 4.4 SP3.
4
What is the CWE ID for CVE-2018-17948?
The CWE ID for CVE-2018-17948 is CWE-601.
5
How can I fix the open redirect vulnerability in CVE-2018-17948?
To fix the open redirect vulnerability in CVE-2018-17948, update to Microfocus Access Manager 4.4 SP3 or later.