Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advanced Authentication. This issue affects Advanced Authentication versions before 6.5
History

Thu, 15 May 2025 14:45:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advance Authentication. This issue affects Advance Authentication versions before 6.5 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advanced Authentication. This issue affects Advanced Authentication versions before 6.5

Wed, 14 May 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 14 May 2025 14:30:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advance Authentication. This issue affects Advance Authentication versions before 6.5
Title SQL Injection vulnerability has been discovered in OpenText™ Advanced Authentication.
Weaknesses CWE-89
References
Metrics cvssV4_0

{'score': 7.5, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:H/VI:H/VA:L/SC:L/SI:L/SA:N/U:Green'}


cve-icon MITRE

Status: PUBLISHED

Assigner: OpenText

Published: 2025-05-14T14:18:45.334Z

Updated: 2025-05-20T14:26:02.052Z

Reserved: 2024-11-05T14:11:34.314Z

Link: CVE-2024-10864

cve-icon Vulnrichment

Updated: 2025-05-14T14:52:27.852Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-14T15:15:54.573

Modified: 2025-05-16T14:43:56.797

Link: CVE-2024-10864

cve-icon Redhat

No data.