First published: Wed May 15 2024(Updated: )
File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a file without authentication.
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Imanager | >=3.0<3.2.6 | |
Microfocus Imanager | =3.2.6 | |
Microfocus Imanager | =3.2.6-patch1 | |
Microfocus Imanager | =3.2.6-patch2 | |
Microfocus Imanager | =3.2.6-patch3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-3488 is classified as a critical vulnerability due to its potential for unauthenticated file uploads.
To fix CVE-2024-3488, it is recommended to upgrade to the latest patched version of OpenText™ iManager.
CVE-2024-3488 affects OpenText™ iManager versions 3.2.6 and prior, including various patches.
The potential impact of CVE-2024-3488 includes unauthorized file uploads which can lead to system compromise.
No, CVE-2024-3488 allows file uploads without any authentication, making it particularly dangerous.