CVE-2021-22503: Improper Neutralization of Input During Web Page Generation Vulnerability
Published Sep 12, 2024
·Updated
Possible Improper Neutralization of Input During Web Page Generation Vulnerability
in eDirectory has been discovered in OpenText™ eDirectory 9.2.3.0000.
Affected Software
1 affected component
MicroFocus Edirectory<9.2.3.0000
Event History
Sep 12, 2024
CVE Published
via MITRE·12:44 PM
Data Sourced
via MITRE·12:44 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-22503?
CVE-2021-22503 is classified as a medium severity vulnerability.
2
How do I fix CVE-2021-22503?
To remediate CVE-2021-22503, update to a patched version of OpenText™ eDirectory that addresses this issue.
3
What impact does CVE-2021-22503 have on eDirectory?
CVE-2021-22503 could lead to improper neutralization of input during web page generation, potentially allowing for malicious input.
4
Is CVE-2021-22503 exploitable remotely?
Yes, CVE-2021-22503 may be exploited remotely, depending on the configuration and exposure of the affected eDirectory installation.
5
What versions of eDirectory are affected by CVE-2021-22503?
CVE-2021-22503 affects Microfocus eDirectory versions up to but not including 9.2.3.0000.