← Back to browse · API

CVE-2024-56404

Severity
CRITICAL
CVSS
9.9
EPSS
0.00664
Risk score
39.83
CISA KEV
No
PoC
No
Published
2025-01-24
Modified
2025-01-24
First seen
2026-08-07
Aliases
EUVD-2024-53137, GHSA-V64Q-G9RJ-XX9J
Products
Opentext:Identity Manager 9.0.0 <9.3
Sources
euvd EUVD-2024-53137

Description

In One Identity Identity Manager 9.x before 9.3, an insecure direct object reference (IDOR) vulnerability allows privilege escalation. Only On-Premise installations are affected.

References