CVE-2025-0884: Privilege Escalation vulnerability has been discovered in OpenText™ Service Manager.
Published Mar 12, 2025
·Updated
Unquoted Search Path or Element vulnerability in OpenText™ Service Manager.
The vulnerability could allow a user to gain SYSTEM privileges through Privilege Escalation.
This issue affects Service Manager: 9.70, 9.71, 9.72.
Affected Software
1 affected component
OpenText Service Manager>=9.70<=9.72
Remediation
Information
OpenText™ Service Manager (SM) Security Bulletin - Unquoted Service Path Enumeration https://portal.microfocus.com/s/article/KM000036731
Event History
Mar 12, 2025
CVE Published
via MITRE·03:24 PM
Data Sourced
via MITRE·03:24 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-0884?
CVE-2025-0884 has a high severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2025-0884?
To fix CVE-2025-0884, ensure that you update OpenText™ Service Manager to a version later than 9.72.
3
What versions of OpenText Service Manager are affected by CVE-2025-0884?
CVE-2025-0884 affects OpenText Service Manager versions 9.70, 9.71, and 9.72.
4
What type of vulnerability is CVE-2025-0884?
CVE-2025-0884 is classified as an unquoted search path or element vulnerability.
5
What impact does CVE-2025-0884 have on system security?
CVE-2025-0884 can allow an attacker to gain SYSTEM privileges, leading to significant security risks.