Home

Description

Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and below.

PUBLISHED Reserved 2024-05-09 | Published 2024-10-16 | Updated 2024-10-16 | Assigner OpenText




MEDIUM: 5.1CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/S:N/AU:Y/R:U/V:D/RE:L/U:Green

Problem types

CWE-611 Improper Restriction of XML External Entity Reference

Product status

Default status
unaffected

24.1.0 and below (hpi)
affected

References

portal.microfocus.com/s/article/KM000033548?language=en_US

cve.org (CVE-2024-4690)

nvd.nist.gov (CVE-2024-4690)

Download JSON