An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The Java application server can be used to bypass the authentication of the QDS endpoints of the Content Server. These endpoints can be used to create objects and execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-01-18T00:00:00

Updated: 2023-01-20T00:00:00

Reserved: 2022-11-27T00:00:00


Link: CVE-2022-45927

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-01-18T22:15:10.473

Modified: 2023-01-30T15:28:54.280


Link: CVE-2022-45927

JSON object: View

cve-icon Redhat Information

No data.

CWE