Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-26327— Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance Center

EPSS 0.16% · P37
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-26327

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Stored cross-site scripting (XSS) has been discovered in OpenText™ Performance Center
Source: NVD (National Vulnerability Database)
Vulnerability Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in OpenText Performance Center on Windows allows Retrieve Embedded Sensitive Data.This issue affects Performance Center: 12.63.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
信息暴露
Source: NVD (National Vulnerability Database)
Vulnerability Title
HPE MicroFocus Performance Center 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
HPE MicroFocus Performance Center是美国HPE公司的一款企业级性能测试软件。旨在促进标准化、集中化、全球协作以及性能测试卓越中心的形成。 HPE MicroFocus Performance Center存在安全漏洞。攻击者利用该漏洞可在web环境中运行 JavaScript 代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
OpenTextPerformance Center 12.63 -

II. Public POCs for CVE-2022-26327

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-26327

登录查看更多情报信息。

Same Patch Batch · OpenText · 2024-08-21 · 5 CVEs total

CVE-2020-118468.7 HIGHImproper handling of token allows access to restricted resource in Privileged Access Manag
CVE-2020-118478.2 HIGHVulnerability in sshrelay in privileged access manager provides full system access.
CVE-2020-118507.3 HIGHCross site scripting vulnerability in Self Service Password Reset
CVE-2022-26328User enumeration vulnerability has been discovered in OpenText™ Performance Center

IV. Related Vulnerabilities

V. Comments for CVE-2022-26327

No comments yet


Leave a comment