SQL Injection Vulnerability in OpenText Advance Authentication
CVE-2024-10864

7.5HIGH

Key Information:

Vendor

Opentext

Vendor
CVE Published:
14 May 2025

What is CVE-2024-10864?

An SQL Injection vulnerability exists in OpenText Advance Authentication, allowing attackers to exploit improper neutralization of special elements used in SQL commands. This flaw affects versions prior to 6.5, posing potential risks for data integrity and confidentiality. Users of these versions should take immediate action to apply updates and mitigate possible exploitation.

Affected Version(s)

Advance Authentication Linux 6.5

References

CVSS V4

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.