René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

144 lines
4.7 KiB
JSON

{
"id": "CVE-2019-17085",
"sourceIdentifier": "security@microfocus.com",
"published": "2019-11-18T21:15:12.370",
"lastModified": "2019-11-21T13:58:33.443",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "XXE attack vulnerability on Micro Focus Operations Agent, affected version 12.0, 12.01, 12.02, 12.03, 12.04, 12.05, 12.06, 12.10, 12.11. The vulnerability could be exploited to do an XXE attack on Operations Agent."
},
{
"lang": "es",
"value": "Una vulnerabilidad de ataque XXE en Micro Focus Operations Agent, versiones afectada 12.0, 12.01, 12.02, 12.03, 12.04, 12.05, 12.06, 12.10, 12.11. La vulnerabilidad podr\u00eda ser explotada para llevar a cabo un ataque de tipo XXE sobre Operations Agent."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "HIGH",
"baseScore": 6.5,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 2.8,
"impactScore": 3.6
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 4.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-611"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.0:*:*:*:*:*:*:*",
"matchCriteriaId": "B386C147-D89B-45C2-9C68-545C1102F519"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.01:*:*:*:*:*:*:*",
"matchCriteriaId": "1A21863B-4079-44B7-9E77-AEF2ACFEE866"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.02:*:*:*:*:*:*:*",
"matchCriteriaId": "BCB70185-D717-4CCD-96D7-D87DB0B26D23"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.03:*:*:*:*:*:*:*",
"matchCriteriaId": "BFAEA425-6775-422A-810F-34148C0568D5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.04:*:*:*:*:*:*:*",
"matchCriteriaId": "36D8E42D-76B8-44F1-9D5E-1E028856048B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.05:*:*:*:*:*:*:*",
"matchCriteriaId": "2CE2D00B-25CF-46C5-9A59-7288D027FF4C"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.06:*:*:*:*:*:*:*",
"matchCriteriaId": "F4AF06A9-7934-49E4-BA84-4060F069FE12"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.10:*:*:*:*:*:*:*",
"matchCriteriaId": "71E8620F-E030-4A29-9630-E52FE9F8CBAF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microfocus:operations_agent:12.11:*:*:*:*:*:*:*",
"matchCriteriaId": "7DCB40C1-168E-41AE-B346-C3579ECCE8B0"
}
]
}
]
}
],
"references": [
{
"url": "https://softwaresupport.softwaregrp.com/doc/KM03556426",
"source": "meissner@suse.de",
"tags": [
"Vendor Advisory"
]
}
]
}