Vulnerabilidades en OpenText

148 resultados
Análisis Vexday

Com 137 CVEs catalogadas, o portfólio de vulnerabilidades da OpenText apresenta uma taxa de exploração ativa abaixo da média geral do catálogo CISA KEV, sem registros de falhas em exploração confirmada no momento. As 6 vulnerabilidades de severidade crítica e a ausência de provas de conceito públicas conhecidas reduzem, em parte, o risco imediato de exploração em larga escala. O tipo de falha mais recorrente é CWE-787 (escrita fora dos limites de memória), categoria que historicamente favorece execução remota de código e merece atenção prioritária em processos de patch management. A CVE mais relevante no momento, CVE-2021-31508, registra um EPSS de 0,0181, indicando baixa probabilidade estimada de exploração ativa no curto prazo, embora sua presença no radar recomende monitoramento contínuo.

CVE-2023-4553MEDIUMUnauthenticated Access to AppBuilder Configuration FilesEPSS 0.4%CVE-2024-12799CRITICALInsufficiently Protected CredentialsEPSS 0.4%CVE-2024-1973HIGHElevation of privileges vulnerabilityEPSS 0.4%CVE-2023-7240MEDIUMBroken Access Control leading to SSRF in NetIQ Identity ConsoleEPSS 0.4%CVE-2024-5201HIGHDimensions RM - Privilege EscalationEPSS 0.4%CVE-2024-3488MEDIUMFile Upload vulnerability in unauthenticated session found in iManager.EPSS 0.4%CVE-2023-4552MEDIUMJava Database Connectivity (JDBC) URL ManipulationEPSS 0.4%CVE-2021-22532HIGHPossible NLDAP Denial of Service attack VulnerabilityEPSS 0.4%CVE-2024-12111HIGHPotential LDAP injection vulnerability in OpenText Privileged Access ManagerEPSS 0.4%CVE-2022-26322MEDIUMPossible Insertion of Sensitive Information into Log File Vulnerability in Identity ManagerEPSS 0.4%CVE-2025-8052LOWHQL Injection vulnerability has been discovered in Opentext Flipper.EPSS 0.4%CVE-2024-5202HIGHDimensions RM - Arbitrary File ReadEPSS 0.4%CVE-2024-2835HIGHOpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSSEPSS 0.4%CVE-2024-3482HIGHOpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSSEPSS 0.4%CVE-2024-4190HIGHOpenText ArcSight Logger Stored XSSEPSS 0.3%CVE-2021-38133HIGHPossible Improper authentication Vulnerability in OpenText eDirectoryEPSS 0.3%CVE-2025-5808HIGHAuthentication Bypass vulnerability discovered in the OpenText™ Self-Service Password ResetEPSS 0.3%CVE-2024-12543MEDIUMA user enumeration and subsequent data integrity vulnerability affecting barcode functionalityEPSS 0.3%CVE-2020-11859HIGHPotential Cross Site Scripting vulnerability in OpenText iManagerEPSS 0.3%CVE-2020-11846HIGHImproper handling of token allows access to restricted resource in Privileged Access ManagerEPSS 0.3%