6.5
CVSSv3

CVE-2022-45435

Published: 31/01/2023 Updated: 08/02/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

IdentityIQ 8.3 and all 8.3 patch levels before 8.3p2, IdentityIQ 8.2 and all 8.2 patch levels before 8.2p5, IdentityIQ 8.1 and all 8.1 patch levels before 8.1p7, IdentityIQ 8.0 and all 8.0 patch levels before 8.0p6, and all prior versions allow authenticated users assigned the Identity Administrator capability or any custom capability that contains the SetIdentityForwarding right to modify the work item forwarding configuration for identities other than the ones that should be allowed by Lifecycle Manager Quicklink Population configuration.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sailpoint identityiq 8.3

sailpoint identityiq 8.2

sailpoint identityiq 8.1

sailpoint identityiq

sailpoint identityiq 8.0