<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Visual COBOL</title>
  <link>https://cvedaily.com/pages/tags/visual-cobol.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/visual-cobol.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Visual COBOL</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:09 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2023-4501 – User authentication with username and password credentials is ineffective in Ope...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-4501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-4501</guid>
    <pubDate>Tue, 12 Sep 2023 19:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-4501</strong></p>
  <p>User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), versions 7.0 patch updates 19 and 20, 8.0 patch updates 8 and 9, and 9.0 patch update 1, when LDAP-based authentication is used with certain configurations. When the…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-253</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-4501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32265 – A potential security vulnerability has been identified in the Enterprise Server ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32265</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32265</guid>
    <pubDate>Thu, 20 Jul 2023 14:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32265</strong></p>
  <p>A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component used in Enterprise Server, Enterprise Test Server, Enterprise Developer, Visual COBOL, and COBOL Server. An attacker would need to be authenticated into ESCWA to attempt to exploit this vulnerability. As described in the hardening guide in the product documentation, other mi…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32265">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
