CVE-2024-12706
Severity CVSS v4.0:
LOW
Type:
CWE-89
SQL Injection
Publication date:
28/04/2025
Last modified:
29/04/2025
Description
Improper Neutralization of Special Elements used in an SQL Command (&#39;SQL Injection&#39;) vulnerability in OpenText™ Digital Asset Management. T<br />
<br />
he vulnerability could allow an authenticated user to run arbitrary SQL commands on the underlying database. <br />
<br />
This issue affects Digital Asset Management.: through 24.4.