Vulnerability Details CVE-2019-11658
Information exposure in Micro Focus Content Manager, versions 9.1, 9.2 and 9.3. This vulnerability when configured to use an Oracle database, allows valid system users to gain access to a limited subset of records they would not normally be able to access when the system is in an undisclosed abnormal state.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.5%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
Products affected by CVE-2019-11658
-
cpe:2.3:a:microfocus:content_manager:9.1
-
cpe:2.3:a:microfocus:content_manager:9.2
-
cpe:2.3:a:microfocus:content_manager:9.3