Vulnerabilities > Opentext > High

DATE CVE VULNERABILITY TITLE RISK
2021-06-15 CVE-2021-31495 Out-of-bounds Write vulnerability in Opentext Brava! Desktop 16.6.3.84
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84.
local
low complexity
opentext CWE-787
7.8
2021-06-15 CVE-2021-31496 Out-of-bounds Write vulnerability in Opentext Brava! Desktop 16.6.3.84
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84.
local
low complexity
opentext CWE-787
7.8
2021-06-15 CVE-2021-31497 Use After Free vulnerability in Opentext Brava! Desktop 16.6.3.84
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84.
local
low complexity
opentext CWE-416
7.8
2021-06-15 CVE-2021-31499 Out-of-bounds Write vulnerability in Opentext Brava! Desktop 16.6.3.84
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84.
local
low complexity
opentext CWE-787
7.8
2021-06-15 CVE-2021-31500 Untrusted Pointer Dereference vulnerability in Opentext Brava! Desktop 16.6.3.84
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84.
local
low complexity
opentext CWE-822
7.8
2021-06-15 CVE-2021-31502 Use After Free vulnerability in Opentext Brava! Desktop 16.6.4.55
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop Build 16.6.4.55.
local
low complexity
opentext CWE-416
7.8
2017-10-03 CVE-2017-14759 XXE vulnerability in Opentext Document Sciences Xpression 4.5
OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 (older versions might be affected as well) is prone to an XML External Entity vulnerability: /xFramework/services/QuickDoc.QuickDocHttpSoap11Endpoint/.
network
low complexity
opentext CWE-611
7.5
2017-02-22 CVE-2017-5586 Improper Input Validation vulnerability in Opentext Documentum D2
OpenText Documentum D2 (formerly EMC Documentum D2) 4.x allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the BeanShell (bsh) and Apache Commons Collections (ACC) libraries.
network
low complexity
opentext CWE-20
7.5
2004-12-31 CVE-2004-2496 Remote Denial Of Service vulnerability in OpenText FirstClass HTTP Daemon Search Function
The HTTP daemon in OpenText FirstClass 7.1 and 8.0 allows remote attackers to cause a denial of service (service availability loss) via a large number of POST requests to /Search.
network
low complexity
opentext
7.8
2004-01-20 CVE-2004-0037 Local File Reference Command Execution vulnerability in Opentext Firstclass Desktop Client 7.1
FirstClass Desktop Client 7.1 allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages.
network
low complexity
opentext
7.5