First published: Wed Aug 21 2024(Updated: )
Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Cross-Site Scripting (XSS). This issue affects Self Service Password Reset before 4.5.0.2 and 4.4.0.6
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
Micro Focus NetIQ Self Service Password Reset | <4.4 | |
Micro Focus NetIQ Self Service Password Reset | =4.4 | |
Micro Focus NetIQ Self Service Password Reset | =4.4-update_1 | |
Micro Focus NetIQ Self Service Password Reset | =4.4-update_2 | |
Micro Focus NetIQ Self Service Password Reset | =4.4-update_3 | |
Micro Focus NetIQ Self Service Password Reset | =4.4-update_4 | |
Micro Focus NetIQ Self Service Password Reset | =4.4-update_5 | |
Micro Focus NetIQ Self Service Password Reset | =4.5 | |
Micro Focus NetIQ Self Service Password Reset | =4.5-update_1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11850 has been classified as a medium severity vulnerability due to its potential for Cross-Site Scripting (XSS).
To remediate CVE-2020-11850, upgrade OpenText Self Service Password Reset to version 4.5.0.2 or later, or to 4.4.0.6 or later.
CVE-2020-11850 affects all versions of OpenText Self Service Password Reset prior to 4.5.0.2 and 4.4.0.6.
CVE-2020-11850 is an improper input validation vulnerability that allows Cross-Site Scripting (XSS) attacks.
There are no documented workarounds for CVE-2020-11850; upgrading to a fixed version is the recommended action.