Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5.
History

Tue, 27 May 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 27 May 2025 15:15:00 +0000

Type Values Removed Values Added
Description Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5.
Title Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication.
Weaknesses CWE-497
References
Metrics cvssV4_0

{'score': 2.1, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/S:P/AU:N/V:C/RE:M/U:Red'}


cve-icon MITRE

Status: PUBLISHED

Assigner: OpenText

Published: 2025-05-27T15:00:30.910Z

Updated: 2025-05-27T15:17:27.699Z

Reserved: 2025-03-11T22:39:05.579Z

Link: CVE-2025-2236

cve-icon Vulnrichment

Updated: 2025-05-27T15:17:25.226Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-27T15:15:32.223

Modified: 2025-05-28T15:01:30.720

Link: CVE-2025-2236

cve-icon Redhat

No data.