« Volver al listado

CVE-2019-11669

Estado: ModificadaAlta (7.5)—

Modifiable read only check box In Micro Focus Service Manager, versions 9.60p1, 9.61, 9.62. This vulnerability could be exploited to allow unauthorized modification of data.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2019-11669",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "security@opentext.com",
      "affectedData": [
        {
          "vendor": "Micro Focus",
          "product": "Service Manager",
          "versions": [
            {
              "status": "affected",
              "version": "9.60p1"
            },
            {
              "status": "affected",
              "version": "9.61"
            },
            {
              "status": "affected",
              "version": "9.62"
            }
          ]
        }
      ]
    }
  ],
  "published": "2019-09-10T21:15:11.923",
  "references": [
    {
      "url": "https://softwaresupport.softwaregrp.com/doc/KM03517334",
      "source": "security@opentext.com"
    },
    {
      "url": "https://softwaresupport.softwaregrp.com/doc/KM03517334",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Modifiable read only check box In Micro Focus Service Manager, versions 9.60p1, 9.61, 9.62. This vulnerability could be exploited to allow unauthorized modification of data."
    },
    {
      "lang": "es",
      "value": "Una casilla de comprobación de solo lectura modificable en Micro Focus Service Manager, versiones 9.60p1, 9.61, 9.62. Esta vulnerabilidad podría explotarse para permitir la modificación no autorizada de datos."
    }
  ],
  "lastModified": "2026-06-17T02:13:22.783",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:microfocus:service_manager:9.60:p1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9B6ED322-719B-4C20-9E88-62738382100C"
            },
            {
              "criteria": "cpe:2.3:a:microfocus:service_manager:9.61:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DF16B7A1-72A1-4F62-8530-583B2EC7CCA8"
            },
            {
              "criteria": "cpe:2.3:a:microfocus:service_manager:9.62:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C13557C1-F29B-4DAC-88A5-A0604271B368"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security@opentext.com"
}