Beveiligingsadvies

CVE-2024-3317

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-15 15:55:07
Laatst bijgewerkt 2024-08-01 20:05:08
Toegewezen door SailPoint
CVSS-score 6.5
Status PUBLISHED

Beschrijving

An improper access control was identified in the Identity Security Cloud (ISC) message server API that allowed an authenticated user to exfiltrate job processing metadata (opaque messageIDs, work queue depth and counts) for other tenants.