Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Openiam
CRITICAL 9.8
CVE-2020-13420
OpenIAM before 4.2.0.3 allows remote attackers to execute arbitrary code via Groovy Script.
Fix: 4.2.0.3+
Fix from $2,300
2021-04-06
Openiam
CRITICAL 9.8
CVE-2020-13421
OpenIAM before 4.2.0.3 has Incorrect Access Control for the Create User, Modify User Permissions, and Password Reset actions.
Fix: 4.2.0.3+
Fix from $2,300
2021-04-06
Openiam
HIGH 8.1
CVE-2020-13422
OpenIAM before 4.2.0.3 does not verify if a user has permissions to perform /webconsole/rest/api/* administrative actions.
Fix: 4.2.0.3+
Fix from $1,950
2021-04-06
Openiam
MEDIUM 6.1
CVE-2020-13418
OpenIAM before 4.2.0.3 allows XSS in the Add New User feature.
Fix: 4.2.0.3+
Fix from $1,600
2021-04-06
Openiam
MEDIUM 5.3
CVE-2020-13419
OpenIAM before 4.2.0.3 allows Directory Traversal in the Batch task.
Fix: 4.2.0.3+
Fix from $1,600
2021-04-06