Back

HIGH

Java Database Connectivity (JDBC) URL Manipulation

Published Jan 29, 2024

Description

Improper Input Validation vulnerability in OpenText AppBuilder on Windows, Linux allows Probe System Files.

An authenticated AppBuilder user with the ability to create or manage existing databases can leverage them to exploit the AppBuilder server - including access to its local file system.

This issue affects AppBuilder: from 21.2 before 23.2.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner OpenText
Published Jan 29, 2024
Updated Jun 17, 2025
Reserved Aug 25, 2023

CISA Vulnrichment

Updated Feb 5, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner OpenText
Published Jan 29, 2024
Updated Jun 17, 2025

GitHub

No data