An unauthorized user can modify configuration through APIcalls that affects the OpenText AccessManager. This issue affects Access Manager before 5.1.3.