CVE-2024-4189 - CVE House
Back to Database
Status published Medium CVE-2024-4189

Multiple XXE sinks in Run LoadRunner script step in OpenText Application Automation Tools

Vulnerability Description

Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and below.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-4189

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

OpenText Application Automation Tools
Vulnerable Versions:
24.1.0 and below

Timeline

Official Publish: October 16th, 2024
Last Modified: October 16th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)