Vulnerabilities > Opentext > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2023-7249 Path Traversal vulnerability in Opentext Directory Services
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OpenText OpenText Directory Services allows Path Traversal.This issue affects OpenText Directory Services: from 16.4.2 before 24.1.
network
low complexity
opentext CWE-22
critical
9.8
2024-08-06 CVE-2024-6359 Unspecified vulnerability in Opentext Arcsight Intelligence
Privilege escalation vulnerability identified in OpenText ArcSight Intelligence.
network
low complexity
opentext
critical
9.8
2024-03-15 CVE-2023-7248 Unspecified vulnerability in Opentext Vertica
Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests.  The vulnerability would affect one of Vertica’s authentication functionalities by allowing specially crafted requests and sequences.
network
low complexity
opentext
critical
9.8
2023-05-01 CVE-2022-35898 Improper Authentication vulnerability in Opentext Bizmanager
OpenText BizManager before 16.6.0.1 does not perform proper validation during the change-password operation.
network
low complexity
opentext CWE-287
critical
9.8
2017-04-21 CVE-2017-7220 Improper Input Validation vulnerability in Opentext Documentum Content Server
OpenText Documentum Content Server allows superuser access via sys_obj_save or save of a crafted object, followed by an unauthorized "UPDATE dm_dbo.dm_user_s SET user_privileges=16" command, aka an "RPC save-commands" attack.
network
low complexity
opentext CWE-20
critical
9.0