Vulnerabilities (CVE)

Filtered by CWE-66
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-10905 2024-12-06 N/A 10.0 CRITICAL
IdentityIQ 8.4 and all 8.4 patch levels prior to 8.4p2, IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p5, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p8, and all prior versions allow HTTP/HTTPS access to static content in the IdentityIQ application directory that should be protected.