CVE-2019-11664: Medium severity hp service manager vulnerability
Published Sep 18, 2019
·Updated
Clear text password in browser in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow sensitive data exposure.
Affected Software
1 affected component
Microfocus Service Manager>=9.30<=9.62
Event History
Sep 18, 2019
CVE Published
via MITRE·09:35 PM
Data Sourced
via MITRE·09:35 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-11664?
CVE-2019-11664 has a high severity level due to the exposure of clear text passwords.
2
How do I fix CVE-2019-11664?
To mitigate CVE-2019-11664, users should upgrade to a patched version of Micro Focus Service Manager.
3
Which versions of Micro Focus Service Manager are affected by CVE-2019-11664?
CVE-2019-11664 affects Micro Focus Service Manager versions 9.30 to 9.62.
4
What type of data is exposed in CVE-2019-11664?
CVE-2019-11664 exposes sensitive data including passwords stored in clear text in the browser.
5
Can CVE-2019-11664 lead to unauthorized access?
Yes, exploiting CVE-2019-11664 could allow an attacker to gain unauthorized access to sensitive information.