Centralized access management platform with SSO, MFA, and risk-based policies
by Soffid · soffid.com · source ↗
In Soffid Console 3.6.31 before 3.6.32, authorization to use the pam service is mishandled.
In the Console in Soffid IAM before 3.5.39, necessary checks were not applied to some Java objects. A malicious agent could possibly execute arbitrary code in the Sync Server and compromise security.
Untrusted Java serialization in Soffid IAM console before 1.7.5 allows remote attackers to achieve arbitrary remote code execution via a crafted authentication request.
No datasheets, whitepapers, case studies, videos, or demos linked yet.