Information exposure in Micro Focus Content Manager, versions 9.1, 9.2 and 9.3. This vulnerability when configured to use an Oracle database, allows valid system users to gain access to a limited subset of records they would not normally be able to access when the system is in an undisclosed abnormal state.
| Software | From | Fixed in |
|---|---|---|
| microfocus / content_manager | 9.1 | 9.1.x |
| microfocus / content_manager | 9.2 | 9.2.x |
| microfocus / content_manager | 9.3 | 9.3.x |