CVE-2022-26327: Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance Center
Published Aug 21, 2024
·Updated
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in OpenText Performance Center on Windows allows Retrieve Embedded Sensitive Data.This issue affects Performance Center: 12.63.
Affected Software
1 affected component
OpenText Performance Center
Remediation
Information
Hotfix provided: https://portal.microfocus.com/s/article/KM000006815?language=en_US
Event History
Aug 21, 2024
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26327?
CVE-2022-26327 is classified as a medium severity vulnerability.
2
What impact does CVE-2022-26327 have on OpenText Performance Center?
CVE-2022-26327 allows unauthorized access to embedded sensitive data within OpenText Performance Center.
3
How do I fix CVE-2022-26327?
To mitigate CVE-2022-26327, ensure that you update OpenText Performance Center to version 12.63 or later.
4
Who is affected by CVE-2022-26327?
Any organization using OpenText Performance Center version 12.63 is affected by CVE-2022-26327.
5
What is the nature of the vulnerability in CVE-2022-26327?
CVE-2022-26327 is an exposure of sensitive information to an unauthorized actor.