CVE-2018-6495: MFSBGN03808 rev.1 - Micro Focus UCMDB, Cross-Site Scripting
Cross-Site Scripting (XSS) in Micro Focus Universal CMDB, version 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, 10.33, 11.0, CMS, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1 and Micro Focus UCMDB Browser, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1. This vulnerability could be remotely exploited to allow Cross-Site Scripting (XSS).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-6495?
CVE-2018-6495 is a vulnerability in Micro Focus Universal CMDB, CMS, and UCMDB Browser that allows for Cross-Site Scripting (XSS) attacks.
What is the severity of CVE-2018-6495?
The severity of CVE-2018-6495 is medium with a severity score of 5.4.
Which versions of Micro Focus Universal CMDB are affected by CVE-2018-6495?
The affected versions of Micro Focus Universal CMDB are 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, 10.33, and 11.0.
Which versions of CMS and UCMDB Browser are affected by CVE-2018-6495?
The affected versions of CMS are 4.10, 4.11, 4.12, 4.13, 4.14, and 4.15.1. The affected versions of UCMDB Browser are 4.10, 4.11, 4.12, 4.13, 4.14, and 4.15.1.
How can I fix CVE-2018-6495?
To fix CVE-2018-6495, it is recommended to update to a version of Micro Focus Universal CMDB, CMS, or UCMDB Browser that is not affected by the vulnerability.