Opentext · Opentext Secure Content Manager · CVE-2024-12530
**Name of the Vulnerable Software and Affected Versions**
OpenText Secure Content Manager version 23.4
**Description**
The issue is related to an Uncontrolled Search Path Element vulnerability in OpenText Secure Content Manager on Windows, which allows DLL Side-Loading. This could potentially be exploited by end-users to execute malicious code in the trusted context of the thick-client application.
**Recommendations**
For OpenText Secure Content Manager version 23.4, consider restricting access to the application until a patch is available, and avoid using any potentially vulnerable DLLs. As a temporary workaround, consider disabling any features that may be using the vulnerable search path element until a fix is provided.