CVE-2025-8049: Insufficient Access Control vulnerability has been discovered in OpenText Flipper.
Published Oct 20, 2025
·Updated
Insufficient Granularity of Access Control vulnerability in opentext Flipper allows Exploiting Incorrectly Configured Access Control Security Levels. The vulnerability could allow a low-privilege user to elevate privileges within the application.
This issue affects Flipper: 3.1.2.
Affected Software
2 affected components
OpenText Flipper
OpenText Flipper=3.1.2
Remediation
Information
https://support.opentext.com/csm?id=ot_kb_unauthenticated&sysparm_article=KB0850530
Event History
Oct 20, 2025
CVE Published
via MITRE·07:56 PM
Data Sourced
via MITRE·07:56 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-8049?
CVE-2025-8049 is classified as a medium severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2025-8049?
To fix CVE-2025-8049, ensure that access control security levels are configured correctly in OpenText Flipper.
3
Who is affected by CVE-2025-8049?
CVE-2025-8049 affects users of OpenText Flipper version 3.1.2.
4
What type of vulnerability is CVE-2025-8049?
CVE-2025-8049 is an Insufficient Granularity of Access Control vulnerability.
5
Can CVE-2025-8049 allow unauthorized access?
Yes, CVE-2025-8049 can allow low-privilege users to elevate their privileges unlawfully.