CVE-2022-35898

Publication date

2023-05-01 00:00:00

Family

mitre

State

PUBLISHED

Description

OpenText BizManager before 16.6.0.1 does not perform proper validation during the change-password operation. This allows any authenticated user to change the password of any other user, including the Administrator account.