Vulnerabilities (CVE)

Filtered by vendor Openiam Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-13421 1 Openiam 1 Openiam 2022-07-12 7.5 HIGH 9.8 CRITICAL
OpenIAM before 4.2.0.3 has Incorrect Access Control for the Create User, Modify User Permissions, and Password Reset actions.
CVE-2020-13420 1 Openiam 1 Openiam 2021-04-08 7.5 HIGH 9.8 CRITICAL
OpenIAM before 4.2.0.3 allows remote attackers to execute arbitrary code via Groovy Script.