7.5
CVSSv3

CVE-2023-4550

Published: 29/01/2024 Updated: 05/02/2024
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9

Vulnerability Summary

Improper Input Validation, Files or Directories Accessible to External Parties vulnerability in OpenText AppBuilder on Windows, Linux allows Probe System Files. An unauthenticated or authenticated user can abuse a page of AppBuilder to read arbitrary files on the server on which it is hosted. This issue affects AppBuilder: from 21.2 prior to 23.2.

Vulnerable Product Search on Vulmon Subscribe to Product

opentext appbuilder