PT-2024-10885 · Opentext · Opentext Edirectory

Published

2024-09-12

·

Updated

2024-09-19

·

CVE-2021-22532

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions OpenText eDirectory versions prior to 9.2.4.0000
Description A possible NLDAP Denial of Service attack vulnerability has been discovered in eDirectory. This issue may allow for a denial of service attack.
Recommendations For versions prior to 9.2.4.0000, update to version 9.2.4.0000 or later to resolve the issue. As a temporary workaround, consider restricting access to the eDirectory service to minimize the risk of exploitation.

Fix

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-22532

Affected Products

Opentext Edirectory