CVE-2023-4964

Potential open redirect vulnerability
in opentext Service Management Automation X
(SMAX)  versions 2020.05, 2020.08,
2020.11, 2021.02, 2021.05, 2021.08, 2021.11, 2022.05, 2022.11 and opentext Asset
Management X (AMX) versions 2021.08, 2021.11, 2022.05, 2022.11. The
vulnerability could allow attackers to redirect a user to
malicious websites.







Open Redirect
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.2 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:L
OpenTextCNA
8.2 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:L
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 21%
VendorProductVersion
microfocusasset_management_x
2021.08
microfocusasset_management_x
2021.11
microfocusasset_management_x
2022.05
microfocusasset_management_x
2022.11
microfocusservice_management_automation_x
2020.05
microfocusservice_management_automation_x
2020.08
microfocusservice_management_automation_x
2020.11
microfocusservice_management_automation_x
2021.02
microfocusservice_management_automation_x
2021.05
microfocusservice_management_automation_x
2021.08
microfocusservice_management_automation_x
2021.11
microfocusservice_management_automation_x
2022.05
microfocusservice_management_automation_x
2022.11
𝑥
= Vulnerable software versions