CVE-2020-9524 vulnerability in Micro Focus Products
Published on May 18, 2020
Cross Site scripting vulnerability on Micro Focus Enterprise Server and Enterprise developer, affecting all versions prior to version 5.0 Patch Update 8. The vulnerability could allow an attacker to trigger administrative actions when an administrator viewed malicious data left by the attacker (stored XSS) or followed a malicious link (reflected XSS).
Products Associated with CVE-2020-9524
stack.watch emails you whenever new vulnerabilities are published in Micro Focus Enterprise Developer or Micro Focus Enterprise Server. Just hit a watch button to start following.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.