CVE-2024-2228
22.03.2024, 16:15
This vulnerability allows an authenticated user to perform a Lifecycle Manager flow or other QuickLink for a target user outside of the defined QuickLink Population.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sailpoint | identityiq | 𝑥 < 8.1 |
| sailpoint | identityiq | 8.1:patch1 |
| sailpoint | identityiq | 8.1:patch2 |
| sailpoint | identityiq | 8.1:patch3 |
| sailpoint | identityiq | 8.1:patch4 |
| sailpoint | identityiq | 8.1:patch5 |
| sailpoint | identityiq | 8.1:patch6 |
| sailpoint | identityiq | 8.2 |
| sailpoint | identityiq | 8.2:patch1 |
| sailpoint | identityiq | 8.2:patch2 |
| sailpoint | identityiq | 8.2:patch4 |
| sailpoint | identityiq | 8.2:patch5 |
| sailpoint | identityiq | 8.3 |
| sailpoint | identityiq | 8.3:patch1 |
| sailpoint | identityiq | 8.3:patch2 |
| sailpoint | identityiq | 8.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration