By weakness (CWE)
CWE-648: related vulnerabilities
CVEs classified under CWE-648. Understanding the weakness class helps prioritize systemic fixes over one-off patches.
1 published vulnerability
- CVE-2026-11877HIGH 7.5
CVE-2026-11877 is a high-severity vulnerability in OpenText Access Manager that allows an unauthenticated attacker to modify system configuration via API calls. An attacker on the network can send specially crafted API requests to alter Access Manager settings without providing credentials, potentially compromising authentication, authorization, or system behavior. This vulnerability affects Access Manager versions before 5.1.3.