CVE-2024-39669
EUVD-2024-3817427.06.2024, 16:15
In the Console in Soffid IAM before 3.5.39, necessary checks were not applied to some Java objects. A malicious agent could possibly execute arbitrary code in the Sync Server and compromise security.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| soffid | iam | 𝑥 < 3.5.39 | ADP |