Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services.
This issue affects Advanced Authentication versions before 6.5.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://portal.microfocus.com/s/article/KM000039947 |
|
History
Tue, 27 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5. | |
| Title | Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication. | |
| Weaknesses | CWE-497 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: OpenText
Published: 2025-05-27T15:00:30.910Z
Updated: 2025-05-27T15:17:27.699Z
Reserved: 2025-03-11T22:39:05.579Z
Link: CVE-2025-2236
Updated: 2025-05-27T15:17:25.226Z
Status : Awaiting Analysis
Published: 2025-05-27T15:15:32.223
Modified: 2025-05-28T15:01:30.720
Link: CVE-2025-2236
No data.