An unauthorized user can modify configuration through API
calls that affects the OpenText Access
Manager. This issue affects Access Manager before 5.1.3.
calls that affects the OpenText Access
Manager. This issue affects Access Manager before 5.1.3.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://portal.microfocus.com/s/article/KM000047450 |
|
History
Wed, 24 Jun 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Opentext
Opentext access Manager |
|
| Vendors & Products |
Opentext
Opentext access Manager |
Wed, 24 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthorized user can modify configuration through API calls that affects the OpenText Access Manager. This issue affects Access Manager before 5.1.3. | |
| Title | Missing Authorization Vulnerability in OpenText Access Manager | |
| Weaknesses | CWE-648 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: OpenText
Published:
Updated: 2026-06-24T15:02:15.542Z
Reserved: 2026-06-10T13:19:47.916Z
Link: CVE-2026-11877
Updated: 2026-06-24T15:01:55.329Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-24T20:40:45Z
Weaknesses