VYPR

Openam

by Osstech

CVEs (2)

  • CVE-2017-10873HigNov 2, 2017
    risk 0.53cvss 8.1epss 0.03

    OpenAM (Open Source Edition) allows an attacker to bypass authentication and access unauthorized contents via unspecified vectors. Note that this vulnerability affects OpenAM (Open Source Edition) implementations configured as SAML 2.0IdP, and switches authentication methods…

  • CVE-2025-8662Sep 2, 2025
    risk 0.00cvss epss 0.00

    OpenAM (OpenAM Consortium Edition) contains a vulnerability that may cause it to malfunction as a SAML IdP due to a tampered request.This issue affects OpenAM: from 14.0.0 through 14.0.1.