7.4
CVE-2023-6400
- EPSS 0.09%
- Published 27.03.2024 13:15:46
- Last modified 21.11.2024 08:43:47
- Source security@opentext.com
- Teams watchlist Login
- Open Login
Incorrect Authorization vulnerability in OpenText™ ZENworks Configuration Management (ZCM) allows Unauthorized Use of Device Resources.This issue affects ZENworks Configuration Management (ZCM) versions: 2020 update 3, 23.3, and 23.4.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users. Login
Daten sind bereitgestellt durch das CVE Programm von Authorized Data Publishers (ADP) (Unstrukturiert)
Vendormicrofocus
≫
Product
zenworks_configuration_management
Default Statusunknown
Version
2020_update3
Status
affected
Version
23.3
Status
affected
Version
23.4
Status
affected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.09% | 0.273 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
security@opentext.com | 7.4 | 0.7 | 6 |
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
|
CWE-863 Incorrect Authorization
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.