This issue affects Advanced Authentication versions before 6.5.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
https://portal.microfocus.com/s/article/KM000039947
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27697 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5. |
| Link | Providers |
|---|---|
| https://portal.microfocus.com/s/article/KM000039947 |
|
Tue, 27 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in OpenText Advanced Authentication allows Information Elicitation. The vulnerability could reveal sensitive information while managing and configuring of the external services. This issue affects Advanced Authentication versions before 6.5. | |
| Title | Exposure of Sensitive System Information vulnerability during configuration affecting OpenText Advanced Authentication. | |
| Weaknesses | CWE-497 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: OpenText
Published:
Updated: 2025-05-27T15:17:27.699Z
Reserved: 2025-03-11T22:39:05.579Z
Link: CVE-2025-2236
Updated: 2025-05-27T15:17:25.226Z
Status : Deferred
Published: 2025-05-27T15:15:32.223
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-2236
No data.
OpenCVE Enrichment
No data.
EUVD