CVE-2022-45924: High severity opentext extended ecm vulnerability
Published Jan 18, 2023
·Updated
An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The endpoint itemtemplate.createtemplate2 allows a low-privilege user to delete arbitrary files on the server's local filesystem.
Affected Software
1 affected component
OpenText Opentext Extended Ecm>=20.4<=22.3
Event History
Jan 18, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-45924?
CVE-2022-45924 has a severity rating of high due to its ability to allow unauthorized file deletion.
2
How do I fix CVE-2022-45924?
To fix CVE-2022-45924, update the OpenText Content Suite Platform to a version later than 22.3.
3
Who is affected by CVE-2022-45924?
CVE-2022-45924 affects users of OpenText Content Suite Platform versions 20.4 to 22.3.
4
What does CVE-2022-45924 allow a low-privilege user to do?
CVE-2022-45924 allows a low-privilege user to delete arbitrary files on the server's local filesystem.
5
Is CVE-2022-45924 a local or remote exploit?
CVE-2022-45924 is considered a local exploit as it requires access to the server environment.