CVE-2023-38535: Critical severity opentext exceed turbo x vulnerability
Published Mar 13, 2024
·Updated
Use of Hard-coded Cryptographic Key vulnerability in OpenText™ Exceed Turbo X affecting versions 12.5.1 and 12.5.2. The vulnerability could compromise the cryptographic keys.
Affected Software
3 affected components
OpenText Exceed Turbox=12.5.0
OpenText Exceed Turbox=12.5.1
OpenText Exceed Turbo X>=12.5.1<=12.5.2
Remediation
Information
https://support.opentext.com/csm?id=kb_article_view&sysparm_article=KB0801267
Event History
Mar 13, 2024
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-38535?
CVE-2023-38535 is considered a significant vulnerability due to its impact on cryptographic key compromise.
2
How can I fix CVE-2023-38535?
To fix CVE-2023-38535, update OpenText Exceed Turbo X to version 12.5.3 or later.
3
What versions of OpenText Exceed Turbo X are affected by CVE-2023-38535?
CVE-2023-38535 affects OpenText Exceed Turbo X versions 12.5.1 and 12.5.2.
4
What does the CVE-2023-38535 vulnerability involve?
CVE-2023-38535 involves the use of hard-coded cryptographic keys which could lead to key compromise.
5
Is it safe to use OpenText Exceed Turbo X version 12.5.3 and later regarding CVE-2023-38535?
Yes, OpenText Exceed Turbo X version 12.5.3 and later are not affected by CVE-2023-38535.