CVE-2024-8125: A remote code vulnerability has been discovered in OpenText™ Content Management.
Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management (Extended ECM) allows Parameter Injection.
A bad actor with the required OpenText Content Management privileges (not root) could expose the vulnerability to carry out a remote code execution attack on the target system.
This issue affects Content Management (Extended ECM): from 10.0 through 24.4
with WebReports module installed and enabled.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8125?
CVE-2024-8125 has been classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2024-8125?
To fix CVE-2024-8125, it is recommended to update OpenText Content Management to the latest version that addresses this vulnerability.
Which versions of OpenText Content Management are affected by CVE-2024-8125?
CVE-2024-8125 affects OpenText Content Management versions from 10.0 to 24.4.
What type of vulnerability is CVE-2024-8125?
CVE-2024-8125 is categorized as an Improper Validation of Specified Type of Input vulnerability, enabling parameter injection.
Who can exploit CVE-2024-8125?
CVE-2024-8125 can potentially be exploited by a bad actor with the necessary OpenText Content Management privileges, excluding root access.