Okta

Access Gateway

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 08.09.2026 20:14:52
  • Zuletzt bearbeitet 22.09.2026 20:02:52

The Okta Access Gateway does not neutralize shell metacharacters in SNMP configuration values before a privileged script uses them to construct OS commands. An authenticated local user with access to the management interface can supply crafted values...

Exploit
  • EPSS 22.33%
  • Veröffentlicht 02.04.2021 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:59:06

A command injection vulnerability in the cookieDomain and relayDomain parameters of Okta Access Gateway before 2020.9.3 allows attackers (with admin access to the Okta Access Gateway UI) to execute OS commands as a privileged system account.