CVE-2025-3476 CRITICAL

CVE-2025-3476

Vendor Opentext™
Product Operations Bridge Manager
Weakness CWE-863 · Incorrect authorization
Published May 7, 2025
Last update May 7, 2025

CVSS base score

9.4/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/AU:Y/R:U/V:C/RE:H/U:Red

What the vulnerability does

01Description

Incorrect Authorization vulnerability in OpenText™ Operations Bridge Manager. The vulnerability could allows privilege escalation by authenticated users.This issue affects Operations Bridge Manager: 2023.05, 23.4, 24.2, 24.4.

Key dates

02Disclosure timeline

May 7, 2025 CVE published
May 7, 2025 Record updated

Related vulnerabilities

04Related CVE