Arbitrary Code Execution Vulnerability in OpenText Documentum D2
CVE-2023-32264

5.8MEDIUM

Key Information:

Vendor
Opentext
Vendor
CVE Published:
8 March 2024

Summary

CWE-1385 vulnerability in OpenText Documentum D2 affecting versions16.5.1 to CE 23.2. The vulnerability could allow upload arbitrary code and execute it on the client's computer.

Affected Version(s)

Documentum D2 16.5.1

References

CVSS V3.1

Score:
5.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.