CVE-2022-45927: High severity opentext extended ecm vulnerability
An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The Java application server can be used to bypass the authentication of the QDS endpoints of the Content Server. These endpoints can be used to create objects and execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45927?
CVE-2022-45927 is classified as a critical vulnerability due to its ability to bypass authentication and execute arbitrary code.
How do I fix CVE-2022-45927?
To mitigate CVE-2022-45927, it is recommended to upgrade OpenText Extended ECM to version 22.4 or later.
What systems are affected by CVE-2022-45927?
CVE-2022-45927 affects OpenText Content Suite Platform version 22.1 up to 22.3.
What type of vulnerability is CVE-2022-45927?
CVE-2022-45927 is a remote code execution vulnerability that allows unauthorized control over the system.
What can attackers do with CVE-2022-45927?
Attackers exploiting CVE-2022-45927 can bypass authentication on QDS endpoints to create objects and run arbitrary code.