Записи SailPoint
12 опубликованных записей вендора sailpoint.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 41,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-269 Improper Privilege Management2
- CWE-863 Incorrect Authorization2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-66 Improper Handling of File Names that Identify Virtual Resources1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-20 Improper Input Validation1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
12 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-10905Эксплойта нет | IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerabilitysailpoint · identityiq · CWE-66 | Критическая9,8 | — | 0,9 % | 2 дек. 2024 г. |
39Наблюдать | CVE-2026-12341Эксплойта нет | SailPoint IdentityIQ Improper Bearer Token Validation Vulnerabilitysailpoint · identityiq · CWE-287 | Критическая9,8 | — | 0,4 % | 20 июл. 2026 г. |
36Наблюдать | CVE-2024-3319Эксплойта нет | Security implication in SailPoint Identity Security Cloud IdentityProfile API Endpointssailpoint · identity security cloud · CWE-94 | Критическая9,1 | — | 0,8 % | 15 мая 2024 г. |
35Наблюдать | CVE-2023-32217Эксплойта нет | SailPoint IdentityIQ Unsafe use of Reflection Vulnerabilitysailpoint · identityiq · CWE-470 | Высокая8,8 | — | 0,6 % | 5 июн. 2023 г. |
35Наблюдать | CVE-2024-2228Эксплойта нет | IdentityIQ Authorization of QuickLink Target Identities Vulnerabilitysailpoint · identityiq · CWE-269 | Высокая8,8 | — | 0,4 % | 22 мар. 2024 г. |
35Наблюдать | CVE-2026-5712Эксплойта нет | IdentityIQ Role Editor Incorrect Authorization Vulnerabilitysailpoint · identityiq · CWE-863 | Высокая8,8 | — | 0,3 % | 29 апр. 2026 г. |
30Наблюдать | CVE-2022-46835Эксплойта нет | SailPoint IdentityIQ JavaServer File Path Traversal Vulnerabilitysailpoint · identityiq · CWE-22 | Высокая7,5 | — | 0,9 % | 31 янв. 2023 г. |
30Наблюдать | CVE-2024-2227Эксплойта нет | IdentityIQ JavaServer Faces File Path Traversal Vulnerabilitysailpoint · identityiq · CWE-22 | Высокая7,5 | — | 0,8 % | 22 мар. 2024 г. |
28Наблюдать | CVE-2019-12889Proof of concept | An unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2.sailpoint · desktop password reset · CWE-269 | Высокая7,0 | — | 0,6 % | 20 авг. 2019 г. |
28Наблюдать | CVE-2024-1714Эксплойта нет | Access Request for Entitlement Values with Leading/Trailing Whitespacesailpoint · identityiq · CWE-20 | Высокая7,1 | — | 0,3 % | 21 февр. 2024 г. |
26Наблюдать | CVE-2022-45435Эксплойта нет | SailPoint IdentityIQ Access Control Bypasssailpoint · identityiq · CWE-863 | Средняя6,5 | — | 0,4 % | 31 янв. 2023 г. |
24Наблюдать | CVE-2025-10280Эксплойта нет | Incorrect Content Type Cross-Site Scripting Vulnerabilitysailpoint · identityiq · CWE-79 | Средняя6,1 | — | 0,2 % | 3 нояб. 2025 г. |
- CVE-2024-1090539Наблюдать
IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %sailpoint · identityiq2 дек. 2024 г.
- CVE-2026-1234139Наблюдать
SailPoint IdentityIQ Improper Bearer Token Validation Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %sailpoint · identityiq20 июл. 2026 г.
- CVE-2024-331936Наблюдать
Security implication in SailPoint Identity Security Cloud IdentityProfile API Endpoints
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %sailpoint · identity security cloud15 мая 2024 г.
- CVE-2023-3221735Наблюдать
SailPoint IdentityIQ Unsafe use of Reflection Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %sailpoint · identityiq5 июн. 2023 г.
- CVE-2024-222835Наблюдать
IdentityIQ Authorization of QuickLink Target Identities Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %sailpoint · identityiq22 мар. 2024 г.
- CVE-2026-571235Наблюдать
IdentityIQ Role Editor Incorrect Authorization Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %sailpoint · identityiq29 апр. 2026 г.
- CVE-2022-4683530Наблюдать
SailPoint IdentityIQ JavaServer File Path Traversal Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %sailpoint · identityiq31 янв. 2023 г.
- CVE-2024-222730Наблюдать
IdentityIQ JavaServer Faces File Path Traversal Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %sailpoint · identityiq22 мар. 2024 г.
- CVE-2019-1288928Наблюдать
An unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2.
ВысокаяCVSS 7,0Proof of conceptEPSS 1 %sailpoint · desktop password reset20 авг. 2019 г.
- CVE-2024-171428Наблюдать
Access Request for Entitlement Values with Leading/Trailing Whitespace
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %sailpoint · identityiq21 февр. 2024 г.
- CVE-2022-4543526Наблюдать
SailPoint IdentityIQ Access Control Bypass
СредняяCVSS 6,5Эксплойта нетEPSS 0 %sailpoint · identityiq31 янв. 2023 г.
- CVE-2025-1028024Наблюдать
Incorrect Content Type Cross-Site Scripting Vulnerability
СредняяCVSS 6,1Эксплойта нетEPSS 0 %sailpoint · identityiq3 нояб. 2025 г.