QID 731253
Date Published: 2024-03-14
QID 731253: Micro Focus Operations Bridge Reporter (OBR) Remote Code Execution (RCE) Vulnerability
Micro Focus Operations Bridge Reporter 10.40 is susceptible to remote code execution. An attacker can potentially execute malware, obtain sensitive information, modify data, and/or execute unauthorized operations without entering necessary credentials.
Affected Versions:
Operations Bridge Reporter 10.40
QID Detection Logic (Unauthenticated):
This QID sends a crafted payload as an HTTP POST request that triggers a callback to the scanner, if vulnerable. Please note that this QID relies on a callback to the scanner on a random port. The target must be enabled to connect back to any random port on the scanner.
Successful exploitation of the vulnerability may allow an unauthenticated attacker to execute arbitrary code remotely, leading to complete system compromise.
- Micro Focus Operations Bridge Reporter -
support.microfocus.com/kb/kmdoc.php?id=KM03775947
CVEs related to QID 731253
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| KM03775947 |
|