CVE-2024-12706: Opentext Digital Asset Management

Low severity, CVSS 2.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText™ Digital Asset Management. T he vulnerability could allow an authenticated user to run arbitrary SQL commands on the underlying database. This issue affects Digital Asset Management.: through 24.4.

Affected products

  • Opentext Digital Asset Management: up to and including 24.4

Published 2025-04-28. Last modified 2026-06-17.