CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Openidentityplatform 1Openam Jul 24, 2026 Apr 7, 2026 9.3 CRITICAL· v4 9.8 CRITICAL· v3 N/A· v2 Open Access Management (OpenAM) is an access management solution. Prior to 16.0.6, OpenIdentityPlatform OpenAM is vulnerable to pre-authentication Remote Code Execution (RCE) via unsafe Java deserialization of the jato.c...Show more |
Open Access Management (OpenAM) is an access management solution that includes Authentication, SSO, Authorization, Federation, Entitlements and Web Services Security. OpenAM up to version 14.7.2 does not properly validat...Show more |
1Openidentityplatform 1Openam Jun 17, 2026 Jun 23, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack." |