Enterprise password manager for secure credential storage and sharing
by Soffid · soffid.com · source ↗
In Soffid Console 3.6.31 before 3.6.32, authorization to use the pam service is mishandled.
In the Console in Soffid IAM before 3.5.39, necessary checks were not applied to some Java objects. A malicious agent could possibly execute arbitrary code in the Sync Server and compromise security.
Untrusted Java serialization in Soffid IAM console before 1.7.5 allows remote attackers to achieve arbitrary remote code execution via a crafted authentication request.
No datasheets, whitepapers, case studies, videos, or demos linked yet.