By leveraging the vulnerability, lower-privileged users of Content Manager can manipulate Content Manager clients to elevate privileges and perform unauthorized operations.
Fixes

Solution

Apply the following patch builds in your data center. Secure Content Manager 23.4 Patch 1: PH_215013 - Content Manager 23.4 Patch 1 Build 111 https://kmviewer.saas.microfocus.com/#/1566945 Secure Content Manager 23.3 Patch 1: PH_215044 - Content Manager 23.3 Patch 1 Build 434 https://kmviewer.saas.microfocus.com/#/1567049 Secure Content Manager 10.1 Patch 5: PH_215040 - Content Manager 10.1 Patch 5 Release Build 1054 Secure Content Manager 10.0 Patch 6: PH_215038 - Content Manager 10.0 Patch 6 Build 1402


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: OpenText

Published:

Updated: 2024-08-06T13:35:36.229Z

Reserved: 2024-02-28T15:31:04.998Z

Link: CVE-2024-1973

cve-icon Vulnrichment

Updated: 2024-08-01T18:56:22.550Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-25T22:37:19.383

Modified: 2024-11-21T08:51:42.740

Link: CVE-2024-1973

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.