First published: Mon Mar 09 2020(Updated: )
There is an improper restriction of rendered UI layers or frames vulnerability in Micro Focus Service Manager Release Control versions 9.50 and 9.60. The vulnerability may result in the ability of malicious users to perform UI redress attacks.
Credit: security@microfocus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Service Manager | =9.50 | |
Microfocus Service Manager | =9.60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9517 is classified as a high severity vulnerability due to the potential for UI redress attacks.
To remediate CVE-2020-9517, update your Micro Focus Service Manager to version 9.61 or later, which addresses this vulnerability.
CVE-2020-9517 affects Micro Focus Service Manager versions 9.50 and 9.60.
CVE-2020-9517 may allow malicious users to conduct UI redress attacks, potentially misleading users.
Yes, CVE-2020-9517 can be exploited remotely if the vulnerable versions of Micro Focus Service Manager are exposed to untrusted users.