This issue affects Advanced Authentication versions before 6.5.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27697 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5. |
Solution
https://portal.microfocus.com/s/article/KM000039947
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://portal.microfocus.com/s/article/KM000039947 |
|
Tue, 27 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5. | |
| Title | Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication. | |
| Weaknesses | CWE-497 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: OpenText
Published:
Updated: 2025-05-27T15:17:27.699Z
Reserved: 2025-03-11T22:39:05.579Z
Link: CVE-2025-2236
Updated: 2025-05-27T15:17:25.226Z
Status : Awaiting Analysis
Published: 2025-05-27T15:15:32.223
Modified: 2025-05-28T15:01:30.720
Link: CVE-2025-2236
No data.
OpenCVE Enrichment
No data.
EUVD