Total vulnerabilities in the database
OpenIAM before 4.2.0.3 does not verify if a user has permissions to perform /webconsole/rest/api/* administrative actions.
CVSS v3:
CVSS v2:
CWEs: