CVE-2020-9523: High severity micro focus enterprise developer vulnerability
Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that account's security.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9523?
CVE-2020-9523 is an insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server.
How does CVE-2020-9523 affect Micro Focus enterprise developer?
CVE-2020-9523 affects all versions prior to 4.0 Patch Update 16 of Micro Focus enterprise developer.
How does CVE-2020-9523 affect Micro Focus enterprise server?
CVE-2020-9523 affects all versions prior to 4.0 Patch Update 16 of Micro Focus enterprise server.
What is the severity of CVE-2020-9523?
The severity of CVE-2020-9523 is high, with a CVSS score of 8.8.
How can I mitigate CVE-2020-9523 on Micro Focus enterprise developer and server?
To mitigate CVE-2020-9523, it is recommended to update to version 4.0 Patch Update 16 or version 5.0 Patch Update 6 of Micro Focus enterprise developer and server.