Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-13422

    OpenIAM before 4.2.0.3 does not verify if a user has permissions to perform /webconsole/rest/api/* administrative actions.

    Last Modified: Nov 21, 2024
    Published: Apr 06, 2021

    CVE-2020-13421

    OpenIAM before 4.2.0.3 has Incorrect Access Control for the Create User, Modify User Permissions, and Password Reset actions.

    Last Modified: Nov 21, 2024
    Published: Apr 06, 2021

    CVE-2020-13419

    OpenIAM before 4.2.0.3 allows Directory Traversal in the Batch task.

    Last Modified: Nov 21, 2024
    Published: Apr 06, 2021

    CVE-2020-13418

    OpenIAM before 4.2.0.3 allows XSS in the Add New User feature.

    Last Modified: Nov 21, 2024
    Published: Apr 06, 2021

    CVE-2020-13420

    OpenIAM before 4.2.0.3 allows remote attackers to execute arbitrary code via Groovy Script.

    Last Modified: Nov 21, 2024
    Published: Apr 06, 2021
    Items Per Page
    Openiam Vulnerabilities & Security CVEs | CVE-DB