PT-2024-12309 · Opentext · Opentext Documentum D2

Published

2024-03-08

·

Updated

2024-03-08

·

CVE-2023-32264

CVSS v3.1

5.8

Medium

VectorAV:N/AC:H/PR:L/UI:R/S:C/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions OpenText Documentum D2 versions 16.5.1 through CE 23.2
Description The issue allows the upload of arbitrary code, which can then be executed on the client's computer. This could potentially lead to malicious activities.
Recommendations For versions 16.5.1 through CE 23.2, update to a version that includes a fix for this issue to prevent the upload and execution of arbitrary code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2023-32264

Affected Products

Opentext Documentum D2