Cross-Site Scripting Vulnerability in Documentum Webtop by OpenText
CVE-2025-3271

4.8MEDIUM

Key Information:

Vendor
CVE Published:
9 September 2026

What is CVE-2025-3271?

Documentum Webtop is susceptible to a Cross-Site Scripting (XSS) attack due to inadequate input validation. This vulnerability allows attackers to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized access or data theft. Affected users should upgrade to version 16.7.1 or later to mitigate this risk and ensure the security of their applications.

Affected Version(s)

Documentum Webtop 0 < 16.7.1

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Deiteriy Co. Ltd.
.