CVE-2022-26328: User enumeration vulnerability has been discovered in OpenText™ Performance Center
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText Performance Center on Windows allows Cross-Site Scripting (XSS).This issue affects Performance Center: 12.63.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26328?
CVE-2022-26328 has a high severity level due to its potential for exploitation via cross-site scripting (XSS).
How do I fix CVE-2022-26328?
To fix CVE-2022-26328, you should apply the latest security patches provided by OpenText for Performance Center version 12.63.
What are the impacts of CVE-2022-26328?
The impact of CVE-2022-26328 includes the possibility of attackers executing arbitrary scripts in the context of a user's browser.
Which versions of OpenText Performance Center are affected by CVE-2022-26328?
CVE-2022-26328 affects OpenText Performance Center version 12.63.
How can I mitigate risks associated with CVE-2022-26328 before a fix is applied?
To mitigate risks associated with CVE-2022-26328, restrict access to vulnerable components and monitor for unusual activity on the application.