We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-12530

Insecure Dynamic-Link Library (DLL) Load vulnerability



Description

Uncontrolled Search Path Element vulnerability in OpenText Secure Content Manager on Windows allows DLL Side-Loading.This issue affects Secure Content Manager: 23.4. End-users can potentially exploit the vulnerability to execute malicious code in the trusted context of the thick-client application.

Reserved 2024-12-11 | Published 2025-04-17 | Updated 2025-04-17 | Assigner OpenText


HIGH: 7.0CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-427 Uncontrolled Search Path Element

Product status

Default status
unaffected

23.4
affected

Credits

Kirwin Webb of Dvuln finder

References

portal.microfocus.com/s/article/KM000040073

cve.org (CVE-2024-12530)

nvd.nist.gov (CVE-2024-12530)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2024-12530

Support options

Helpdesk Chat, Email, Knowledgebase