CVE-2024-10865: Reflected Cross-Site Scripting vulnerability in OpenText Advanced Authentication
Published May 14, 2025
·Updated
Improper Input validation leads to XSS or Cross-site Scripting vulnerability in OpenText Advanced Authentication. This issue affects Advanced Authentication versions before 6.5.
Affected Software
1 affected component
OpenText Advanced Authentication<6.5
Event History
May 14, 2025
CVE Published
via MITRE·02:18 PM
Data Sourced
via MITRE·02:18 PM
DescriptionWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-10865?
CVE-2024-10865 has a significant severity due to the improper input validation leading to potential XSS vulnerabilities.
2
How do I fix CVE-2024-10865?
To fix CVE-2024-10865, update OpenText Advance Authentication to version 6.5 or later.
3
What software is affected by CVE-2024-10865?
CVE-2024-10865 affects OpenText Advance Authentication versions prior to 6.5.
4
What kind of vulnerability is CVE-2024-10865?
CVE-2024-10865 is classified as a Cross-site Scripting (XSS) vulnerability due to improper input validation.
5
What are the implications of CVE-2024-10865 for users?
Users of affected versions of OpenText Advance Authentication may experience security risks such as data exfiltration or unauthorized actions due to XSS.