An issue was identified in the Identity Security Cloud (ISC) Transform preview and IdentityProfile preview API endpoints that allowed an authenticated administrator to execute user-defined templates as part of attribute transforms which could allow remote code execution on the host.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: SailPoint

Published: 2024-05-15T15:44:26.537Z

Updated: 2024-08-16T15:01:04.733Z

Reserved: 2024-04-04T16:14:54.310Z

Link: CVE-2024-3319

cve-icon Vulnrichment

Updated: 2024-08-01T20:05:08.511Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-15T16:15:11.170

Modified: 2024-05-15T16:40:19.330

Link: CVE-2024-3319

cve-icon Redhat

No data.