CVE Vulnerabilities

CVE-2020-11853

Published: Oct 22, 2020 | Modified: Nov 07, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Arbitrary code execution vulnerability affecting multiple Micro Focus products. 1.) Operation Bridge Manager affecting version: 2020.05, 2019.11, 2019.05, 2018.11, 2018.05, versions 10.6x and 10.1x and older versions. 2.) Application Performance Management affecting versions : 9.51, 9.50 and 9.40 with uCMDB 10.33 CUP 3 3.) Data Center Automation affected version 2019.11 4.) Operations Bridge (containerized) affecting versions: 2019.11, 2019.08, 2019.05, 2018.11, 2018.08, 2018.05, 2018.02, 2017.11 5.) Universal CMDB affecting version: 2020.05, 2019.11, 2019.05, 2019.02, 2018.11, 2018.08, 2018.05, 11, 10.33, 10.32, 10.31, 10.30 6.) Hybrid Cloud Management affecting version 2020.05 7.) Service Management Automation affecting version 2020.5 and 2020.02. The vulnerability could allow to execute arbitrary code.

Affected Software

Name Vendor Start Version End Version
Operation_bridge_manager Microfocus * 10.10 (including)
Operation_bridge_manager Microfocus 10.11 (including) 10.11 (including)
Operation_bridge_manager Microfocus 10.12 (including) 10.12 (including)
Operation_bridge_manager Microfocus 10.60 (including) 10.60 (including)
Operation_bridge_manager Microfocus 10.61 (including) 10.61 (including)
Operation_bridge_manager Microfocus 10.62 (including) 10.62 (including)
Operation_bridge_manager Microfocus 10.63 (including) 10.63 (including)
Operations_bridge_manager Microfocus 2017.11 (including) 2017.11 (including)
Operations_bridge_manager Microfocus 2018.02 (including) 2018.02 (including)
Operations_bridge_manager Microfocus 2018.05 (including) 2018.05 (including)
Operations_bridge_manager Microfocus 2018.08 (including) 2018.08 (including)
Operations_bridge_manager Microfocus 2018.11 (including) 2018.11 (including)
Operations_bridge_manager Microfocus 2019.05 (including) 2019.05 (including)
Operations_bridge_manager Microfocus 2019.08 (including) 2019.08 (including)
Operations_bridge_manager Microfocus 2019.11 (including) 2019.11 (including)
Operations_bridge_manager Microfocus 2020.05 (including) 2020.05 (including)

References