PT-2024-31658 · One Identity+2 · One Identity Safeguard For Privileged Passwords+2

Published

2024-08-29

·

Updated

2024-10-20

·

CVE-2024-45488

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: One Identity Safeguard for Privileged Passwords versions prior to 7.5.2 One Identity Safeguard for Privileged Passwords version 7.0.5.1 LTS One Identity Safeguard for Privileged Passwords version 7.4.2
Description: The issue allows unauthorized access due to a problem related to cookies, affecting virtual appliance installations, including those on VMware or HyperV.
Recommendations: For One Identity Safeguard for Privileged Passwords versions prior to 7.0.5.1 LTS, update to version 7.0.5.1 LTS or later. For One Identity Safeguard for Privileged Passwords versions prior to 7.4.2, update to version 7.4.2 or later. For One Identity Safeguard for Privileged Passwords versions prior to 7.5.2, update to version 7.5.2.

Fix

Related Identifiers

CVE-2024-45488

Affected Products

Hyperv
One Identity Safeguard For Privileged Passwords
Vmware