Sun Java System Identity Manager (IdM) 7.0 through 8.0 allows remote authenticated users to gain privileges by submitting crafted commands to the Admin Console, as demonstrated by privileges for account creation and other administrative capabilities, related to the saveNoValidate action and saveNoValidateAllowedFormsAndWorkflows IDs.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-03-25T15:00:00Z
Updated: 2024-09-16T18:14:35.799Z
Reserved: 2009-03-25T00:00:00Z
Link: CVE-2009-1082
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-03-25T15:30:00.500
Modified: 2024-11-21T01:01:37.780
Link: CVE-2009-1082
Redhat
No data.