Show filters
144 Total Results
Displaying 41-50 of 144
Sort by:
Attacker Value
Unknown

CVE-2023-7240

Disclosure Date: May 07, 2024 (last updated May 08, 2024)
 An improper authorization level has been detected in the login panel. It may lead to unauthenticated Server Side Request Forgery and allows to perform open services enumeration. Server makes query to provided server (Server IP/DNS field) and is triggering connection to arbitrary address.
0
Attacker Value
Unknown

CVE-2024-2834

Disclosure Date: April 08, 2024 (last updated April 10, 2024)
A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSight Platform. The vulnerability could be remotely exploited.
0
Attacker Value
Unknown

CVE-2023-6400

Disclosure Date: March 27, 2024 (last updated April 02, 2024)
Incorrect Authorization vulnerability in OpenText™ ZENworks Configuration Management (ZCM) allows Unauthorized Use of Device Resources.This issue affects ZENworks Configuration Management (ZCM) versions: 2020 update 3, 23.3, and 23.4.
0
Attacker Value
Unknown

CVE-2024-1973

Disclosure Date: March 25, 2024 (last updated April 02, 2024)
By leveraging the vulnerability, lower-privileged users of Content Manager can manipulate Content Manager clients to elevate privileges and perform unauthorized operations.
0
Attacker Value
Unknown

CVE-2024-1148

Disclosure Date: March 21, 2024 (last updated April 02, 2024)
Weak access control in OpenText PVCS Version Manager allows potential bypassing of authentication and uploading of files.
0
Attacker Value
Unknown

CVE-2024-1147

Disclosure Date: March 21, 2024 (last updated April 02, 2024)
Weak access control in OpenText PVCS Version Manager allows potential bypassing of authentication and download of files.
0
Attacker Value
Unknown

CVE-2024-1811

Disclosure Date: March 20, 2024 (last updated April 01, 2024)
A potential vulnerability has been identified in OpenText ArcSight Platform. The vulnerability could be remotely exploited.
0
Attacker Value
Unknown

CVE-2023-32260

Disclosure Date: March 19, 2024 (last updated April 01, 2024)
Misinterpretation of Input vulnerability in OpenText™ Service Management Automation X (SMAX), OpenText™ Asset Management X (AMX), and OpenText™ Hybrid Cloud Management X (HCMX) products. The vulnerability could allow Input data manipulation.This issue affects Service Management Automation X (SMAX) versions: 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.08, 2021.11, 2022.05, 2022.11, 2023.05; Asset Management X (AMX) versions: 2021.08, 2021.11, 2022.05, 2022.11, 2023.05; and Hybrid Cloud Management X (HCMX) versions: 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.08, 2021.11, 2022.05, 2022.11, 2023.05.
0
Attacker Value
Unknown

CVE-2023-32259

Disclosure Date: March 19, 2024 (last updated April 01, 2024)
Insufficient Granularity of Access Control vulnerability in OpenText™ Service Management Automation X (SMAX), OpenText™ Asset Management X (AMX) allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.08, 2021.11, 2022.05, 2022.11; and Asset Management X (AMX) versions 2021.08, 2021.11, 2022.05, 2022.11.
0
Attacker Value
Unknown

CVE-2023-7248

Disclosure Date: March 15, 2024 (last updated July 27, 2024)
Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests.  The vulnerability would affect one of Vertica’s authentication functionalities by allowing specially crafted requests and sequences. This issue impacts the following Vertica Management Console versions: 10.x 11.1.1-24 or lower 12.0.4-18 or lower Please upgrade to one of the following Vertica Management Console versions: 10.x to upgrade to latest versions from below. 11.1.1-25 12.0.4-19 23.x 24.x