First published: Wed Sep 18 2019(Updated: )
Class and method names in error message in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. This vulnerability could be exploited in some special cases to allow information exposure through an error message.
Credit: security@microfocus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Service Manager | >=9.30<=9.62 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-11662 is considered low as it involves information exposure through error messages.
To fix CVE-2019-11662, update Micro Focus Service Manager to a version above 9.62.
CVE-2019-11662 affects Micro Focus Service Manager versions 9.30 through 9.62.
CVE-2019-11662 is an information exposure vulnerability.
CVE-2019-11662 can be exploited in special cases where the error messages disclose class and method names.