Vulnerabilities in opentext

147 results
Vexday analysis

OpenText apresenta 9 vulnerabilidades catalogadas na base do Vexday, nenhuma delas sob ataque ativo ou com severidade crítica. Não há publicações recentes (últimos 90 dias), indicando um panorama de risco estável e sem pressão imediata. A fraqueza predominante (CWE-1220 - Insufficient Granularity of Access Control) sugere questões estruturais de controle de acesso que merecem atenção em roadmaps de correção de longo prazo.

CVE-2024-12543MEDIUMA user enumeration and subsequent data integrity vulnerability affecting barcode functionalityEPSS 0.3%CVE-2023-7248MEDIUMOpenText Vertica Management console might be prone to bypass via crafted requestsEPSS 0.3%CVE-2025-8616MEDIUMMalicious browser plugins may cause Authentication replay attack vulnerability to bypass authentication in OpenText Advanced AuthenticationEPSS 0.3%CVE-2020-11847HIGHVulnerability in sshrelay in privileged access manager provides full system access.EPSS 0.3%CVE-2021-38119MEDIUMPossible Reflected Cross-Site Scripting (XSS) Vulnerability in OpenText iManagerEPSS 0.3%CVE-2023-4964HIGHPotential open redirect vulnerability in opentext SMAX and AMX product. EPSS 0.3%CVE-2025-3478HIGHOpenText Enterprise Security Manager Stored XSSEPSS 0.3%CVE-2024-4554HIGHMultiple xss vulnerability in NetIQ Access ManagerEPSS 0.3%CVE-2021-38122MEDIUMCross-Site Scripting (XSS) in Advance AuthenticationEPSS 0.3%CVE-2025-8997MEDIUMOpenText Enterprise Security Manager Information ExposureEPSS 0.3%CVE-2025-13478HIGHCache Misconfiguration Leading to Cross-User Data ExposureEPSS 0.3%CVE-2021-38134MEDIUMPossible Reflected and Stored XSS in OpenText iManagerEPSS 0.3%CVE-2024-6358MEDIUMIncorrect Authorization vulnerabilityEPSS 0.3%CVE-2024-10864HIGHSQL Injection vulnerability has been discovered in OpenText™ Advanced Authentication.EPSS 0.3%CVE-2024-12862MEDIUMREST API allows users without permissions to remove external collaboratorsEPSS 0.3%CVE-2020-25836MEDIUMPotential information leakage resulting in unauthorized accessEPSS 0.3%CVE-2022-26324HIGHPossible XSS in iManager URL for access ComponentEPSS 0.3%CVE-2024-4211LOWMultiple missing permission checksEPSS 0.3%CVE-2024-4692LOWMultiple missing permission checksEPSS 0.3%CVE-2024-6357MEDIUMInsecure Direct Object Reference vulnerabilityEPSS 0.3%