Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

In Kofax Front Office Server Administration Console 4.1.1.11.0.5212, some fields, such as passwords, are obfuscated in the front-end, but the cleartext value can be exfiltrated by using the back-end "download" feature, as demonstrated by an mfp.password downloadsettingvalue operation.

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.