Sap Se Sap Identity Management vulnerabilities
3 known vulnerabilities affecting sap_se/sap_identity_management.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2LOW1
Vulnerabilities
Page 1 of 1
CVE-2026-0504LOWCVSS 3.8vIDM_CLM_REST_API 8.0vIDMIC 8.02026-01-13
CVE-2026-0504 [LOW] CWE-943 CVE-2026-0504: Due to insufficient input handling, the SAP Identity Management REST interface allows an authenticat
Due to insufficient input handling, the SAP Identity Management REST interface allows an authenticated administrator to submit specially crafted malicious REST requests that are processed by JNDI operations without adequate input neutralization. This may lead to limited disclosure or modification of data, resulting in low impact on confidentiality and in
cvelistv5nvd
CVE-2020-6258MEDIUMCVSS 6.5fixed in 8.02020-05-12
CVE-2020-6258 [MEDIUM] CWE-862 CVE-2020-6258: SAP Identity Management, version 8.0, does not perform necessary authorization checks for an authent
SAP Identity Management, version 8.0, does not perform necessary authorization checks for an authenticated user, allowing the attacker to view certain sensitive information of the victim, leading to Missing Authorization Check.
cvelistv5nvd
CVE-2018-2417MEDIUMCVSS 5.3v8.02018-05-09
CVE-2018-2417 [MEDIUM] CVE-2018-2417: Under certain conditions, the SAP Identity Management 8.0 (pass of type ToASCII) allows an attacker
Under certain conditions, the SAP Identity Management 8.0 (pass of type ToASCII) allows an attacker to access information which would otherwise be restricted.
cvelistv5nvd