First published: Mon Apr 21 2025(Updated: )
User Enumeration and Data Integrity in Barcode functionality in OpenText Content Management versions 24.3-25.1on Windows and Linux allows a malicous authenticated attacker to potentially alter barcode attributes.
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
OpenText Content Management CE | >=24.3<=25.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12543 is considered a medium severity vulnerability due to the potential for data integrity issues.
To fix CVE-2024-12543, update your OpenText Content Management software to version 25.2 or later.
CVE-2024-12543 allows malicious authenticated attackers to alter barcode attributes, leading to possible user enumeration and data integrity issues.
CVE-2024-12543 affects OpenText Content Management versions 24.3 to 25.1 on both Windows and Linux.
Organizations using vulnerable versions of OpenText Content Management are at risk if they allow authenticated users access to barcode functionality.