Information exposure in Micro Focus Content Manager, versions 9.1, 9.2 and 9.3. This vulnerability when configured to use an Oracle database, allows valid system users to gain access to a limited subset of records they would not normally be able to access when the system is in an undisclosed abnormal state.
2019-08-30T09:15:17.833
2024-11-21T04:21:32.810
Modified
CVSSv3.0: 4.3 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microfocus | content_manager | 9.1 | Yes |
Application | microfocus | content_manager | 9.2 | Yes |
Application | microfocus | content_manager | 9.3 | Yes |