CVE-2025-2236: Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication.
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services.
This issue affects Advanced Authentication versions before 6.5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2236?
CVE-2025-2236 is classified as a medium severity vulnerability.
How do I fix CVE-2025-2236?
To fix CVE-2025-2236, ensure that your version of OpenText Advanced Authentication is updated to version 6.5 or later.
What type of information is exposed by CVE-2025-2236?
CVE-2025-2236 exposes sensitive system information that can lead to unauthorized information elicitation.
Which versions of OpenText Advanced Authentication are affected by CVE-2025-2236?
CVE-2025-2236 affects versions of OpenText Advanced Authentication prior to 6.5.
Does CVE-2025-2236 allow for unauthorized access?
CVE-2025-2236 does not provide unauthorized access but allows information elicitation which can be exploited.