An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability could allow local attackers on the OBR host to execute code with escalated privileges.
References
| Link | Resource |
|---|---|
| https://softwaresupport.softwaregrp.com/doc/KM03710590 | Vendor Advisory |
| https://www.zerodayinitiative.com/advisories/ZDI-20-1217/ | Third Party Advisory |
Configurations
Information
Published : 2020-09-22 14:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-11855
Mitre link : CVE-2020-11855
JSON object : View
Products Affected
microfocus
- operation_bridge_reporter
CWE
CWE-863
Incorrect Authorization
