Vulnerabilities
Vulnerable Software
Saviynt:  Security Vulnerabilities
An issue was discovered in Saviynt Enterprise Identity Cloud (EIC) 5.5 SP2.x. An authentication bypass in ECM/maintenance/forgotpasswordstep1 allows an unauthenticated user to reset passwords and login as any local account.
CVSS Score
9.8
EPSS Score
0.01
Published
2022-01-24
An issue was discovered in Saviynt Enterprise Identity Cloud (EIC) 5.5 SP2.x. An attacker can enumerate users by changing the id parameter, such as for the ECM/maintenance/forgotpasswordstep1 URI.
CVSS Score
5.3
EPSS Score
0.002
Published
2022-01-24


Contact Us

Shodan ® - All rights reserved