CVE-2020-11859: Potential Cross Site Scripting vulnerability in OpenText iManager
Published Nov 6, 2024
·Updated
Improper Input Validation vulnerability in OpenText iManager allows Cross-Site Scripting (XSS). This issue affects iManager before 3.2.3
Affected Software
1 affected component
MicroFocus Imanager<3.2.3
Event History
Nov 6, 2024
CVE Published
via MITRE·02:10 PM
Data Sourced
via MITRE·02:10 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-11859?
CVE-2020-11859 has been classified as a moderate severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2020-11859?
To fix CVE-2020-11859, upgrade OpenText iManager to version 3.2.3 or later.
3
What impact does CVE-2020-11859 have on OpenText iManager?
CVE-2020-11859 allows an attacker to execute arbitrary scripts in the context of the affected user's session through improper input validation.
4
Which versions of OpenText iManager are affected by CVE-2020-11859?
CVE-2020-11859 affects all versions of OpenText iManager prior to 3.2.3.
5
Is CVE-2020-11859 a widespread vulnerability?
CVE-2020-11859 could impact any organization using affected versions of OpenText iManager, making it a concern for many users.