Vulnerabilidades em OpenText

148 resultados
Análise Vexday

Com 137 CVEs catalogadas, o portfólio de vulnerabilidades da OpenText apresenta uma taxa de exploração ativa abaixo da média geral do catálogo CISA KEV, sem registros de falhas em exploração confirmada no momento. As 6 vulnerabilidades de severidade crítica e a ausência de provas de conceito públicas conhecidas reduzem, em parte, o risco imediato de exploração em larga escala. O tipo de falha mais recorrente é CWE-787 (escrita fora dos limites de memória), categoria que historicamente favorece execução remota de código e merece atenção prioritária em processos de patch management. A CVE mais relevante no momento, CVE-2021-31508, registra um EPSS de 0,0181, indicando baixa probabilidade estimada de exploração ativa no curto prazo, embora sua presença no radar recomende monitoramento contínuo.

CVE-2020-11850HIGHCross site scripting vulnerability in Self Service Password ResetEPSS 0.3%CVE-2023-7248MEDIUMOpenText Vertica Management console might be prone to bypass via crafted requestsEPSS 0.3%CVE-2025-8616MEDIUMMalicious browser plugins may cause Authentication replay attack vulnerability to bypass authentication in OpenText Advanced AuthenticationEPSS 0.3%CVE-2020-11847HIGHVulnerability in sshrelay in privileged access manager provides full system access.EPSS 0.3%CVE-2021-38119MEDIUMPossible Reflected Cross-Site Scripting (XSS) Vulnerability in OpenText iManagerEPSS 0.3%CVE-2026-11877MEDIUMMissing Authorization Vulnerability in OpenText Access ManagerEPSS 0.3%CVE-2025-3478HIGHOpenText Enterprise Security Manager Stored XSSEPSS 0.3%CVE-2023-4964HIGHPotential open redirect vulnerability in opentext SMAX and AMX product. EPSS 0.3%CVE-2025-8997MEDIUMOpenText Enterprise Security Manager Information ExposureEPSS 0.3%CVE-2024-4554HIGHMultiple xss vulnerability in NetIQ Access ManagerEPSS 0.3%CVE-2024-12862MEDIUMREST API allows users without permissions to remove external collaboratorsEPSS 0.3%CVE-2021-38134MEDIUMPossible Reflected and Stored XSS in OpenText iManagerEPSS 0.3%CVE-2024-10864HIGHSQL Injection vulnerability has been discovered in OpenText™ Advanced Authentication.EPSS 0.3%CVE-2025-8050MEDIUMExternal Control of File vulnerability has been discovered in opentext Flipper.EPSS 0.3%CVE-2021-38122MEDIUMCross-Site Scripting (XSS) in Advance AuthenticationEPSS 0.3%CVE-2025-8048MEDIUMExternal Control of File path vulnerability has been discovered on Openext Flipper.EPSS 0.3%CVE-2025-13478HIGHCache Misconfiguration Leading to Cross-User Data ExposureEPSS 0.3%CVE-2022-26324HIGHPossible XSS in iManager URL for access ComponentEPSS 0.3%CVE-2024-6358MEDIUMIncorrect Authorization vulnerabilityEPSS 0.3%CVE-2020-25836MEDIUMPotential information leakage resulting in unauthorized accessEPSS 0.3%