CVE-2020-25837
Summary
| CVE | CVE-2020-25837 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-05 21:15:00 UTC |
| Updated | 2023-11-07 03:20:00 UTC |
| Description | Sensitive information disclosure vulnerability in Micro Focus Self Service Password Reset (SSPR) product. The vulnerability affects versions 4.4.0.0 to 4.4.0.6 and 4.5.0.1 and 4.5.0.2. In certain configurations the vulnerability could disclose sensitive information. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microfocus | Self Service Password Reset | All | All | All | All |
| Application | Microfocus | Self Service Password Reset | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| NetIQ Self Service Password Reset 4.4 Patch Update 7 Release Notes | MISC | www.netiq.com | Release Notes, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.