CVE-2021-38133Weak Password Requirements in Edirectory

Severity
6.5MEDIUMNVD
CNA7.4
EPSS
0.3%
top 46.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 12

Description

Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDmicrofocus/edirectory< 9.2.6.0000
CVEListV5opentext/edirectory9.2.09.2.5.0000

🔴Vulnerability Details

2
GHSA
GHSA-x6xc-qv8r-frvx: Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory2024-09-12
CVEList
Possible Improper authentication Vulnerability in OpenText eDirectory2024-09-12
CVE-2021-38133 — Weak Password Requirements | cvebase