Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-45927


An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The Java application server can be used to bypass the authentication of the QDS endpoints of the Content Server. These endpoints can be used to create objects and execute arbitrary code.


Published

2023-01-18T22:15:10.473

Last Modified

2025-04-04T17:15:45.247

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-639
  • Type: Secondary
    CWE-639

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application opentext opentext_extended_ecm < 22.4 Yes

References