Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

OpenText — Vulnerabilities & Security Advisories 148

Browse all 148 CVE security advisories affecting OpenText. AI-powered Chinese analysis, POCs, and references for each vulnerability.

OpenText operates as a global enterprise information management provider, offering solutions for content management, digital asset management, and analytics. Its extensive software portfolio, including Content Server and Exstream, has historically been a frequent target for security researchers, resulting in a significant number of recorded Common Vulnerabilities and Exposures. The most prevalent vulnerability classes affecting these platforms include remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from insufficient input validation or improper access controls. While the company maintains standard security protocols, the sheer volume of its legacy and integrated applications creates a broad attack surface. Recent incidents highlight the critical need for rigorous patch management and continuous monitoring to mitigate risks associated with these complex enterprise systems, ensuring that sensitive data remains protected against evolving cyber threats.

CVE ID Title CVSS Severity Published
CVE-2024-3970 Server-Side Request Forgery vulnerability in iManager — iManager CWE-918 5.3 Medium 2024-05-15
CVE-2023-7240 Broken Access Control leading to SSRF in NetIQ Identity Console — NetIQ Identity Console CWE-20 5.8 Medium 2024-05-07
CVE-2024-2834 OpenText ArcSight Management Center and ArcSight Platform Stored XSS — ArcSight Management Center CWE-79 8.7 High 2024-04-08
CVE-2024-1973 Elevation of privileges vulnerability — Secure Content Manager CWE-269 8.5 High 2024-03-25
CVE-2024-1148 Weak Access Control - Arbitrary file upload — PVCS Version Manager CWE-287 9.8 Critical 2024-03-21
CVE-2024-1147 Weak Access Control - Arbitrary file download — PVCS Version Manager CWE-287 9.8 Critical 2024-03-21
CVE-2024-1811 OpenText ArcSight Platform Remote Vulnerability — ArcSight Platform 9.8 Critical 2024-03-20
CVE-2023-7248 OpenText Vertica Management console might be prone to bypass via crafted requests — Vertica Management Console CWE-20 5.0 Medium 2024-03-15
CVE-2020-11862 Insecure renegotiation in SSL protocol caused Denial of service attack in Privileged Account Manager — NetIQ Privileged Account Manager CWE-770 8.6 High 2024-03-13
CVE-2023-32264 OpenText Documentum D2 安全漏洞 — Documentum D2 CWE-1385 5.8 Medium 2024-03-08
CVE-2024-0967 OpenText / Micro Focus ArcSight Enterprise Security Manager Remote Vulnerability — ArcSight Enterprise Security Manager 4.3 Medium 2024-03-01
CVE-2024-1470 Elevation of Privilege attack on NetIQ Client login extension — NetIQ Client Login Extension CWE-639 7.1 High 2024-02-20
CVE-2023-6123 Improper Neutralization vulnerability affects OpenText ALM Octane. — ALM Octane. 7.5 High 2024-02-15
CVE-2024-0622 Local privilege escalation vulnerability could affect OpenText Operations Agent on Non-Windows platforms. — Operations Agent CWE-269 8.8 High 2024-02-15
CVE-2023-4554 XML External Entity (XXE) Processing — AppBuilder CWE-611 4.9 Medium 2024-01-29
CVE-2023-4553 Unauthenticated Access to AppBuilder Configuration Files — AppBuilder CWE-20 5.3 Medium 2024-01-29
CVE-2023-4552 Java Database Connectivity (JDBC) URL Manipulation — AppBuilder CWE-20 5.5 Medium 2024-01-29
CVE-2023-4551 Command Injection via Task Scheduler — AppBuilder CWE-20 7.2 High 2024-01-29
CVE-2023-4550 Unauthenticated Arbitrary File Read — AppBuilder CWE-20 7.5 High 2024-01-29
CVE-2023-32268 Administrator equivalent Filr user can access proxy administrator credentials — Filr CWE-522 7.2 High 2023-12-06
CVE-2023-5913 A potential Privilege Escalation vulnerability in opentext Fortify ScanCentral DAST API. — Fortify ScanCentral DAST CWE-266 8.2 High 2023-11-08
CVE-2023-4501 Authentication bypass in OpenText (Micro Focus) Enterprise Server — Visual COBOL, COBOL Server, Enterprise Developer, Enterprise Server CWE-287 9.8 Critical 2023-09-12
CVE-2021-31504 OpenText Brava! 安全漏洞 — Brava! Desktop CWE-822 7.8 - 2021-08-03
CVE-2021-31503 OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-824 7.8 - 2021-08-03
CVE-2021-31514 Opentext OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-787 7.8 - 2021-06-29
CVE-2021-31513 OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-787 7.8 - 2021-06-29
CVE-2021-31512 OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-125 7.8 - 2021-06-29
CVE-2021-31511 Opentext OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-787 7.8 - 2021-06-29
CVE-2021-31510 OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-125 7.8 - 2021-06-29
CVE-2021-31509 OpenText Brava! 缓冲区错误漏洞 — Brava! Desktop CWE-787 7.8 - 2021-06-29

This page lists every published CVE security advisory associated with OpenText. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.