← Back

CVE-2024-12111

nvd nist
Published: Dec 19, 2024Modified: Jun 17, 2026Deferred

JSON object

Loading...
8.0
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Exploitability: 1.3 / Impact: 6.0
Source: security@opentext.com (Secondary)

Description

In a specific scenario a LDAP user can abuse the authentication process using injection attack in OpenText Privileged Access Manager that allows authentication bypass. This issue affects Privileged Access Manager version 23.3(4.4); 24.3(4.5)

Timeline

No history available yet.