Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application Automation Tools allows Exploiting Incorrectly Configured Access Control Security Levels. Multiple missing permission checks - Service Virtualization config has been discovered in in OpenText Application Automation Tools. The vulnerability could allow users with Overall/Read permission to enumerate Service Virtualization server names. This issue affects OpenText Application Automation Tools: 24.1.0 and below.
https://portal.microfocus.com/s/article/KM000033546?language=en_US
Published: 2024-10-16
Updated: 2024-10-21
Base Score: 3.3
Vector: CVSS2#AV:N/AC:L/Au:M/C:P/I:N/A:N
Severity: Low
Base Score: 2.4
Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N
Severity: Low
Base Score: 1.8
Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Severity: Low