A potential authorization bypass issue was found in Micro Focus Self Service Password Reset (SSPR) versions prior to: 4.4.0.3, 4.3.0.6, and 4.2.0.6. Upgrade to Micro Focus Self Service Password Reset (SSPR) SSPR versions 4.4.0.3, 4.3.0.6, or 4.2.0.6 as appropriate.
2019-08-14T16:15:12.643
2024-11-21T04:21:32.083
Modified
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microfocus | netiq_self_service_password_reset | < 4.2.0.6 | Yes |
Application | microfocus | netiq_self_service_password_reset | < 4.3.0.6 | Yes |
Application | microfocus | netiq_self_service_password_reset | < 4.4.0.3 | Yes |