High severity7.5NVD Advisory· Published Jan 29, 2024· Updated Jun 17, 2026
CVE-2023-4550
CVE-2023-4550
Description
Improper Input Validation, Files or Directories Accessible to External Parties vulnerability in OpenText AppBuilder on Windows, Linux allows Probe System Files.
An unauthenticated or authenticated user can abuse a page of AppBuilder to read arbitrary files on the server on which it is hosted.
This issue affects AppBuilder: from 21.2 before 23.2.
Affected products
3cpe:2.3:a:opentext:appbuilder:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:opentext:appbuilder:*:*:*:*:*:*:*:*range: >=21.2,<23.2
- (no CPE)range: 21.2 - 23.1
- (no CPE)range: 21.2
Patches
Vulnerability mechanics
References
1- support.opentext.com/csmnvdPermissions Required
News mentions
0No linked articles in our index yet.