Critical severity9.8NVD Advisory· Published May 1, 2023· Updated Jun 17, 2026
CVE-2022-35898
CVE-2022-35898
Description
OpenText BizManager before 16.6.0.1 does not perform proper validation during the change-password operation. This allows any authenticated user to change the password of any other user, including the Administrator account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:opentext:bizmanager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:opentext:bizmanager:*:*:*:*:*:*:*:*range: <16.6.0.1
- (no CPE)range: <16.6.0.1
- OpenText/BizManagerdescription
Patches
Vulnerability mechanics
References
2- hackandpwn.com/disclosures/CVE-2022-35898.pdfnvdThird Party Advisory
- businessnetwork.opentext.com/b2b-gateway/nvdProduct
News mentions
0No linked articles in our index yet.