Improper request input validation in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center allows a user to modify a valid request and spoof an approval in TEAM.
Upgrade TEAM to the latest release v.1.2.2. Follow instructions in updating TEAM documentation for updating process
Upgrade TEAM to the latest release v.1.2.2. Follow instructions in updating TEAM documentation for updating process
Metrics
Affected Vendors & Products
References
History
Tue, 04 Mar 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 04 Mar 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper request input validation in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center allows a user to modify a valid request and spoof an approval in TEAM. Upgrade TEAM to the latest release v.1.2.2. Follow instructions in updating TEAM documentation for updating process | |
Title | Request approval spoofing in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center | |
Weaknesses | CWE-346 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: AMZN
Published:
Updated: 2025-03-04T19:05:23.894Z
Reserved: 2025-03-04T18:30:46.680Z
Link: CVE-2025-1969

Updated: 2025-03-04T19:05:19.176Z

Status : Received
Published: 2025-03-04T19:15:38.290
Modified: 2025-03-04T19:15:38.290
Link: CVE-2025-1969

No data.

No data.