Skip to main content

Vendor/product archive

osstech / openam CVEs

Beta · best-effort

4 CVEs tagged to osstech / openam0 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-31735

Published Sep 15, 2022

OpenAM Consortium Edition version 14.0.0 provided by OpenAM Consortium contains an open redirect vulnerability (CWE-601). When accessing an affected server through some specially…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5915

Published Feb 13, 2019

Open redirect vulnerability in OpenAM (Open Source Edition) 13.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a specially craf…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-0696

Published Feb 13, 2019

OpenAM (Open Source Edition) 13.0 and later does not properly manage sessions, which allows remote authenticated attackers to change the security questions and reset the login pas…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-10873

Published Nov 2, 2017

OpenAM (Open Source Edition) allows an attacker to bypass authentication and access unauthorized contents via unspecified vectors. Note that this vulnerability affects OpenAM (Ope…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1