CVE-2013-6994: Opentext Exceed Ondemand

Medium severity, CVSS 6.4. EPSS: 1.2% chance of exploitation in the next 30 days.

OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attackers to perform session fixation attacks by sniffing the network.

Affected products

  • Opentext Exceed Ondemand: version 8.0 only

Published 2014-05-19. Last modified 2026-06-17.