CVE-2024-12799: Insufficiently Protected Credentials
Insufficiently Protected Credentials vulnerability in OpenText Identity Manager Advanced Edition on Windows, Linux, 64 bit allows Privilege Abuse. This vulnerability could allow an authenticated user to obtain higher privileged user’s sensitive information via crafted payload.
This issue affects Identity Manager Advanced Edition: from 4.8.0.0 through 4.8.7.0102, 4.9.0.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12799?
CVE-2024-12799 is classified as a Privilege Abuse vulnerability, indicating a high severity level due to the potential for sensitive information exposure.
How do I fix CVE-2024-12799?
To mitigate CVE-2024-12799, upgrade your OpenText Identity Manager Advanced Edition to version 4.8.8 or later.
Who is affected by CVE-2024-12799?
CVE-2024-12799 affects users of OpenText Identity Manager Advanced Edition versions ranging from 4.8.0.0 to 4.8.7.0102.
What types of information could be compromised due to CVE-2024-12799?
CVE-2024-12799 could allow authenticated users to access sensitive information belonging to higher privileged users.
What systems are vulnerable to CVE-2024-12799?
CVE-2024-12799 impacts OpenText Identity Manager Advanced Edition on both Windows and Linux operating systems.