CVE-2024-10905
02.12.2024, 15:15
IdentityIQ 8.4 and all 8.4 patch levels prior to 8.4p2, IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p5, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p8, and all prior versionsallow HTTP/HTTPS access tostatic content in the IdentityIQ application directory that should be protected.Enginsight
Vendor | Product | Version |
---|---|---|
sailpoint | identityiq | 8.2p8 < 𝑥 < 8.2p8 |
sailpoint | identityiq | 8.3p5 < 𝑥 < 8.3p5 |
sailpoint | identityiq | 8.4p2 < 𝑥 < 8.4p2 |
𝑥
= Vulnerable software versions