SailPoint kayıtları
sailpoint üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %41,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-269 Improper Privilege Management2
- CWE-863 Incorrect Authorization2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-66 Improper Handling of File Names that Identify Virtual Resources1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-20 Improper Input Validation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2024-10905İstismar yok | IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerabilitysailpoint · identityiq · CWE-66 | Kritik9,8 | — | %0,9 | 2 Ara 2024 |
39İzleyin | CVE-2026-12341İstismar yok | SailPoint IdentityIQ Improper Bearer Token Validation Vulnerabilitysailpoint · identityiq · CWE-287 | Kritik9,8 | — | %0,4 | 20 Tem 2026 |
36İzleyin | CVE-2024-3319İstismar yok | Security implication in SailPoint Identity Security Cloud IdentityProfile API Endpointssailpoint · identity security cloud · CWE-94 | Kritik9,1 | — | %0,8 | 15 May 2024 |
35İzleyin | CVE-2023-32217İstismar yok | SailPoint IdentityIQ Unsafe use of Reflection Vulnerabilitysailpoint · identityiq · CWE-470 | Yüksek8,8 | — | %0,6 | 5 Haz 2023 |
35İzleyin | CVE-2024-2228İstismar yok | IdentityIQ Authorization of QuickLink Target Identities Vulnerabilitysailpoint · identityiq · CWE-269 | Yüksek8,8 | — | %0,4 | 22 Mar 2024 |
35İzleyin | CVE-2026-5712İstismar yok | IdentityIQ Role Editor Incorrect Authorization Vulnerabilitysailpoint · identityiq · CWE-863 | Yüksek8,8 | — | %0,3 | 29 Nis 2026 |
30İzleyin | CVE-2022-46835İstismar yok | SailPoint IdentityIQ JavaServer File Path Traversal Vulnerabilitysailpoint · identityiq · CWE-22 | Yüksek7,5 | — | %0,9 | 31 Oca 2023 |
30İzleyin | CVE-2024-2227İstismar yok | IdentityIQ JavaServer Faces File Path Traversal Vulnerabilitysailpoint · identityiq · CWE-22 | Yüksek7,5 | — | %0,8 | 22 Mar 2024 |
28İzleyin | CVE-2019-12889Kavram kanıtı | An unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2.sailpoint · desktop password reset · CWE-269 | Yüksek7,0 | — | %0,6 | 20 Ağu 2019 |
28İzleyin | CVE-2024-1714İstismar yok | Access Request for Entitlement Values with Leading/Trailing Whitespacesailpoint · identityiq · CWE-20 | Yüksek7,1 | — | %0,3 | 21 Şub 2024 |
26İzleyin | CVE-2022-45435İstismar yok | SailPoint IdentityIQ Access Control Bypasssailpoint · identityiq · CWE-863 | Orta6,5 | — | %0,4 | 31 Oca 2023 |
24İzleyin | CVE-2025-10280İstismar yok | Incorrect Content Type Cross-Site Scripting Vulnerabilitysailpoint · identityiq · CWE-79 | Orta6,1 | — | %0,2 | 3 Kas 2025 |
- CVE-2024-1090539İzleyin
IdentityIQ Improper Access Control VulnerabilityIdentityIQ Improper Access Control Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1sailpoint · identityiq2 Ara 2024
- CVE-2026-1234139İzleyin
SailPoint IdentityIQ Improper Bearer Token Validation Vulnerability
KritikCVSS 9,8İstismar yokEPSS %0sailpoint · identityiq20 Tem 2026
- CVE-2024-331936İzleyin
Security implication in SailPoint Identity Security Cloud IdentityProfile API Endpoints
KritikCVSS 9,1İstismar yokEPSS %1sailpoint · identity security cloud15 May 2024
- CVE-2023-3221735İzleyin
SailPoint IdentityIQ Unsafe use of Reflection Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1sailpoint · identityiq5 Haz 2023
- CVE-2024-222835İzleyin
IdentityIQ Authorization of QuickLink Target Identities Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sailpoint · identityiq22 Mar 2024
- CVE-2026-571235İzleyin
IdentityIQ Role Editor Incorrect Authorization Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sailpoint · identityiq29 Nis 2026
- CVE-2022-4683530İzleyin
SailPoint IdentityIQ JavaServer File Path Traversal Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1sailpoint · identityiq31 Oca 2023
- CVE-2024-222730İzleyin
IdentityIQ JavaServer Faces File Path Traversal Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1sailpoint · identityiq22 Mar 2024
- CVE-2019-1288928İzleyin
An unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2.
YüksekCVSS 7,0Kavram kanıtıEPSS %1sailpoint · desktop password reset20 Ağu 2019
- CVE-2024-171428İzleyin
Access Request for Entitlement Values with Leading/Trailing Whitespace
YüksekCVSS 7,1İstismar yokEPSS %0sailpoint · identityiq21 Şub 2024
- CVE-2022-4543526İzleyin
SailPoint IdentityIQ Access Control Bypass
OrtaCVSS 6,5İstismar yokEPSS %0sailpoint · identityiq31 Oca 2023
- CVE-2025-1028024İzleyin
Incorrect Content Type Cross-Site Scripting Vulnerability
OrtaCVSS 6,1İstismar yokEPSS %0sailpoint · identityiq3 Kas 2025